# Positive fixture for CVE-2026-50027: the semantic memory server pinned below the
# 10.67.1 fix, where every /api/documents/* route is served without auth.
mcp-memory-service==10.67.0
