News

A misconfigured default in the MCP inspector tool allows attackers to execute arbitrary commands via CSRF and legacy browser ...
There was a way to run malicious code on a dev's device remotely by chaining an old vulnerability with a new one.