Agents30 MCP CVEs total - MCP security crisis crystallizesWweb·medium signalXBlueskyLinkedInCopy link30 CVEs since late 2024 launch. Q1 2026 alone produced ~15. 36.7% SSRF rate, ~10% servers compromised. BlueRock Trust Registry scans 7100+ servers. Noma Security MCP guardrails launched. OAuth 2.1 spec criticized as mess for enterprise. Go SDK parsing bypass CVE-2026-27896.↳ Follow the threadShared entity / Stack layerHKUDS/nanobot Reached 47,419 Stars and 8,369 Forks in Under Seven Months but Has Not Tagged a Release Since July 25GitHubShared entity / Stack layerProduct Hunt, August 25: akta.pro Wins at 408 Votes Selling Private-Company Data Priced Per Section So Agents Only Pay for Fields They Ask ForProduct HuntShared entity / Threat patternPraisonAI Validated MCP Origins With startswith, So localhost.attacker.com Passed the AllowlistGitHub Security AdvisoriesPolicy dependency / Threat patternmcp-shell Ships Security Off in One Deploy Path and Bypassable in the Other (CVE-2026-55580/55581/55582)GitHub Security AdvisoriesPolicy dependency / Stack layerMCP-Universe RL trains tool-use agents by using MCP servers as the RL environment interfacearXivStack layer / Threat patternGoogle Cloud Shipped Gemini Enterprise for Financial Services With 50 Skills, 13 Connectors and a Partner Agent MarketplaceGoogle Cloud Blog (corroborated by PRNewswire, 2026-08-25 12:00)Policy dependency / Stack layerHalofy ships an open governance layer for agents with identity, policy, provenance, audit and signed erasureGitHubStack layer / Threat patternMCP Python SDK 2.1.0 stops leaking handler exception text to the model and extends the 4 MiB body cap to SSE and OAuthGitHub (modelcontextprotocol/python-sdk)