logo

Critical Flowise Flaw Enables Remote Command Execution via MCP Adapters

ID: 0419d898-e4e1-594e-96af-e83b01af0f0b

STIX ID: report--0419d898-e4e1-594e-96af-e83b01af0f0b

Feed Name: GBHackers

Threat Score
85/100

Date Published: 2026-04-17

Date Updated: 2026-04-22

Author: Divya

...
...

OX Security disclosed a critical, architecture-level vulnerability in Anthropic’s Model Context Protocol (MCP) that allows unauthenticated arbitrary command execution (RCE) across official MCP SDKs (Python, Rust, Java, TypeScript) and many downstream projects. The flaw yields access to internal databases, user data, chat histories, and API keys, has resulted in multiple CVEs across AI products, and poses a large supply-chain risk; Anthropic has declined to change the protocol, so mitigations and patches must be applied by downstream organizations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.