VulnWatch VulnWatch
← All articles
Daily digest · Sep 15, 2026

Critical MCP Supply Chain Crisis: RCE, SSRF, and Auth Bypasses Dominate September 15 Digest

A wave of critical vulnerabilities in Model Context Protocol (MCP) servers exposes AI agents to remote code execution, credential theft, and DNS rebinding attacks. Immediate patching of GitLab, MySQL, and Context Forge integrations is required.

Subscribers only

The full Daily Briefing is available to VulnWatch subscribers. Subscribe to read this digest and get tomorrow's delivered to your inbox.

See pricing