Analysis · guidance · security research
MCPwatch Blog
Source-linked MCP security analysis, research, incident reports, and operator guidance.
Latest reports
Seven reports per page with crawlable archive links.
-

CVE-2026-30623: LiteLLM Fixes Authenticated MCP RCE
CVE-2026-30623 covers authenticated command execution in LiteLLM MCP stdio management. Vendor and CVSS access claims require careful reading.
-

CVE-2026-58196: ToolHive Fixes Host-Side MCP SSRF
CVE-2026-58196 affects ToolHive remote MCP authentication discovery before 0.31.0, allowing host-side requests to internal services.
-

CVE-2026-61427: PraisonAI MCP Authentication Bypass
CVE-2026-61427 covers missing default authentication in PraisonAI MCP HTTP-stream servers; a duplicate CVE ID has now been rejected.
-

CVE-2026-53509: CKAN MCP Server SSRF Fix Bypass
CVE-2026-53509 affects CKAN MCP Server versions below 0.4.106 after an alias-based hostname check bypassed an earlier SSRF fix.

