Four research teams found the same confused deputy failure in Claude across three surfaces in 48 hours. This audit matrix maps every blind spot and fix.
OX Security confirmed arbitrary command execution on six live platforms and estimates 200,000 MCP servers are exposed. Here's how to audit your deployments.
These tests create a minimal index.db in a temp dir so the server starts successfully. The MCP stdio protocol uses newline-delimited JSON-RPC.
// objects are in a read-only module (py/modsys.c). static void stdio_obj_print(const mp_print_t *print, mp_obj_t self_in, mp_print_kind_t kind) { sys_stdio_obj_t *self = MP_OBJ_TO_PTR(self_in); ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results