logo

Bug hunter tracks down three massive MCP flaws and one vendor won't fix theirs

ID: f6cdc4d9-725d-5e63-944a-492976e1fd7d

STIX ID: report--f6cdc4d9-725d-5e63-944a-492976e1fd7d

Feed Name: The Register (Security)

Threat Score
70/100

Date Published: 2026-05-13

Date Updated: 2026-05-22

...
...

**Executive summary:** The report describes three serious MCP server vulnerabilities—an SQL injection in Apache Doris (patched, CVE-2025-66335), an authentication-bypass/SQL-injection exposure in Apache Pinot integrations (allowing unauthenticated query execution and possible full takeover), and an unauthenticated metadata-exposure flaw in Alibaba RDS MCP (unpatched after vendor refusal)—highlighting systemic gaps in MCP server authentication and query validation that could enable database takeover or metadata exfiltration.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.