vulnerability
Official MCP Python SDK Flaw Can Let Malicious Servers Steal OAuth Credentials
Medium
Summary
A flaw in the official MCP Python SDK allows malicious servers to steal OAuth credentials from applications using the SDK. No attacks using the flaw have been reported as of the article's publication.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
