companies taking this seriously and awarding bounties is indicative it's fairly severe
companies taking this seriously and awarding bounties is indicative it's fairly severe
The RCE/Malware issue aside, if the website you go to is a login page for some service, do you know it's the legitimate website? MCP Phishing is going to be a thing
So there is a chain of issues and you need to leverage them to get there and first pick an MCP that is flawed from a bad actor.
also, the way MCP servers are presented right now is in sort of a "marketplace" fashion meaning it's not out of the question you could find one hosted by a bad actor. PyPI/npm are also like this, but it's different since it's not like you can vet the source code of a running MCP. packages are also versioned, unlike MCP where whoever is hosting them can change the behaviour at any time without notice.
The stream of vulnerability discoveries has been constant.