Frequency
3
occurrences
First Seen
April 16, 2026
Last Seen
June 1, 2026
Related Threat Clusters
-
Critical RCE Vulnerability Discovered in Flowise's MCP Implementation
Obsidian Security identified a critical one-click remote code execution (RCE) vulnerability in Flowise (CVE-2026-40933), affecting self-hosted deployments. The flaw allows attackers to execute arbitrary server-side code…
2 articles · Updated June 1, 2026 -
Design Flaw in MCP Endangers 200K Servers, Researchers Warn
A design flaw in Anthropic's Model Context Protocol (MCP) threatens approximately 200,000 servers with complete takeover, according to the Ox research team. Despite multiple requests for a patch, Anthropic maintains…
2 articles · Updated April 16, 2026
Recent Intelligence Reports
- When Is Stdio Mcp Actually A Vulnerability — www.obsidiansecurity.com · June 1, 2026
- MCP 'design flaw' puts 200k servers at risk: Researcher — Theregister · April 16, 2026
- Anthropic won't own MCP 'design flaw' putting 200K servers at risk, researcher says — Theregister · April 16, 2026