Tag: oauth credentials exposure
1 article

MCP Python SDK Flaw Exposes OAuth Credentials to Malicious Servers
A shocking flaw in the MCP Python SDK leaves OAuth credentials vulnerable to malicious servers, allowing hackers to steal sensitive data with a simple trick. Without a crucial security setting, the SDK can be easily duped into sending login info to the wrong server.