Fetching from the wire…
Security2026-08-06 · source-backed
Research published August 5 found baseboard management controllers leaking auth hashes prior to login through CVE-2013-4786, rooted in the IPMI 2.0 spec itself. For at least a third of exposed servers, researchers recovered valid passwords using dictionaries and the default-credential patterns printed on factory chassis stickers, Supermicro units with 10-character uppercase passwords and username ADMIN being most common. BMC firmware lives independently of the host OS, so a backdoor written to BMC flash survives a full reinstall. Nothing to do with AI. Still probably the worst thing in today's set.
Each link below shares sources, entities, or timing with this story.
NVD published CVE-2026-79743 through 79750 between 18:17:19 and 18:17:20 UTC on August 31, all against the same MCP aggregator (NVD). CVE-2026-79748 lets any authenticated non-admin POST to /api/servers with arbitrary command and args, which MCPHub hands straight to child_proc...
NVD published this against kazuph/mcp-fetch through 1.6.3 on August 26. isSafeUrl reads the hostname from the parsed URL, which for yields the bracketed string, then tests it with net.isIP, which returns zero for a bracketed value. The entire private-address branch is skipped,...
NVD posted nine advisories on August 25, clustering into one shape: a local server assuming a browser can't reach it. PraisonAI validated MCP origins with request_origin.startswith(allowed) against a localhost allowlist, so an attacker-registered localhost.attacker.com passes...
Siddharth Ahuja reported on August 9 that his account was compromised, his ownership stripped from Blender MCP and Ableton MCP (2,600 stars), and the account suspended while the attacker pushed commits. Two CVEs were also filed against the repo (CVE-2026-10661, CVE-2026-10662)...
The Model Context Protocol has a security problem that's no longer theoretical — it's statistical. Between January and February 2026, researchers filed 30+ CVEs against MCP servers, clients, and infrastructure. One package with nearly 500,000 downloads carried a CVSS 9.6 RCE....
CVE-2026-81845, published August 28 at 6.3, covers arben-adm mcp-sequential-thinking through 0.5.0, where import_session and export_session accept a caller-supplied path with no boundary validation. Exploit is public. (NVD) Save and load is the most common place a path paramet...
MindPattern daily
One email a day at 7 AM. Sources and a take on every story. Unsubscribe anytime.