← All changelogs
MCP Manager
- 36
releases
- 32
releases
- 31
releases
Latest releases
v0.1.7 — F033 F030 permission_callback wrapper security fix
Severity: P1 (privilege escalation) — any authenticated user (including subscriber) could invoke any registered ability via mcp-adapter/execute-ability on the default MCP server, bypassing the Abilities-tab exposure gate.
v0.1.6 — F032 OAuth per-server scoping
Legacy pre-F032 DCR OAuth client rows (Claude.ai / ChatGPT / Cursor / Cline connections made before 0.1.6) are auto-purged during the upgrade migration. Any live AI-host session bound to a…
v0.1.5 — F031 Add Google Gemini CLI as an MCP client
The server-edit Clients tab (admin.php?page=acrossai_mcp_manager&action=edit&server={id}&tab=clients) now surfaces a Gemini card (💎 pill) alongside the existing 7. Uses the same npx @automattic/mcp-wordpress-remote@latest bridge + WP Application Password Basic auth as Claude…
v0.1.4 — F030 Per-server ability permission_callback override
The MCP-server-edit Access Control tab now hosts a second section (below the existing wpb-access-control React panel, separated by ) with a single toggle: when enabled, every ability exposed to this…
v0.0.9
Changes Fix: Claude Code tab (MCP Clients → Claude Code) now emits a JSON mcpServers block that matches what ~/.claude.json actually expects, instead of a claude mcp add … –…
v0.0.8
Full changelog: https://github.com/acrossai-co/acrossai-mcp-manager/blob/main/README.txt#L182