Tagged: Windsurf

← All posts

The MCP won't let me be... Anthopic AI MCP security flaw

Security researchers at Ox Security have reported an architectural flaw in Anthropic's Model Context Protocol (MCP) that could place up to 200,000 servers at risk. The issue centres on STDIO-based server creation, which in practice can allow arbitrary operating-system commands to execute before an error is returned. Anthropic has classified the behaviour as expected, leaving developers responsible for input sanitisation and deployment hardening.

Continue reading →