[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"branding":3,"analytics":7,"article-five-organizations-shared-the-same-mcp-security-flaw":10,"sections":44},{"siteName":4,"siteTagline":5,"publisherName":4,"contactEmail":6},"The Revision","Tech news, decoded.","editor@therevision.news",{"gaMeasurementId":8,"adsenseClientId":9},"G-ZW2MV82GYR","ca-pub-8533917693782264",{"article":11},{"id":12,"slug":13,"title":14,"dek":15,"body_md":16,"tags_json":17,"published_at":18,"created_at":19,"updated_at":20,"status":21,"review_note":22,"review_notes":23,"image_url":22,"persona_id":22,"persona_name":22,"section":34,"tags":35,"sources":39,"feedback":43,"feedback_at":22,"cost_usd":43,"total_tokens":43},10270,"five-organizations-shared-the-same-mcp-security-flaw","Five Organizations Shared the Same MCP Security Flaw","Google, JPMorgan Chase, Weaviate, and two government agencies all patched the same SSRF-style bug in their MCP servers, found by one independent researcher.","The same security flaw just turned up, and got patched, in Google's infrastructure, a major bank's, and two different governments' systems.\n\nIndependent researcher Syed Anas Mohiuddin found an identical type of vulnerability in Model Context Protocol (MCP) servers run by five separate organizations: Google, JPMorgan Chase, vector database company Weaviate, France's interministerial digital directorate (DINUM), and the city government of Tangerang in Indonesia. MCP is the emerging standard for connecting AI models to outside tools and data. The flaw was a server-side request forgery issue that let an attacker pivot between protocols inside an MCP server. Mohiuddin reported all five cases and detailed the fixes in an update published this month.\n\nFive unrelated organizations, a search giant, a bank, a database vendor, and two government bodies, independently shipping the same class of bug says less about any single team's competence and more about how young and under-tested MCP implementations still are. AI assistants are getting wired into more backend systems every month, and the protocol linking them hasn't had anywhere near the adversarial scrutiny that HTTP or OAuth have logged over the decades.\n\nMCP is barely two years old. Bugs that show up in five unrelated deployments at once are usually a sign the protocol's security model, not any one engineering team, needs a harder look.","[\"mcp\",\"ssrf\",\"security\",\"vulnerability\"]","2026-10-06T00:00:38.000Z","2026-10-06T13:11:03.707Z","2026-10-06T13:11:07.858Z","published",null,[24,30],{"id":25,"reviewer":26,"round":27,"reason":28,"status":29},"editor-r1","editor",1,"Drop or source the 'protocol pivoting' exploitation detail and the specific description of how the SSRF reached internal systems — neither appears in the supplied source material, which is just a truncated teaser with no technical details, so these read as invented specifics.","resolved",{"id":31,"reviewer":26,"round":32,"reason":33,"status":29},"editor-r2",2,"Drop or source the claim that 'none of the fixes came with an announcement' and that they 'surfaced because one person went looking' — the truncated source material never states whether the fixes were announced, so this reads as an invented, unsupported claim.","security",[36,37,34,38],"mcp","ssrf","vulnerability",[40],{"name":41,"url":42},"The Next Web","https:\u002F\u002Fthenextweb.com\u002Fnews\u002Fmcp-flaw-ssrf-google-jpmorgan-dinum-protocol-pivoting",0,{"sections":45},[46,51,54,59,64,69,74,79,84,89,94,99,104,109],{"name":47,"slug":48,"count":49,"latest_published_at":50},"AI","ai",6347,"2026-10-06T07:49:07.000Z",{"name":52,"slug":34,"count":53,"latest_published_at":18},"Security",879,{"name":55,"slug":56,"count":57,"latest_published_at":58},"Policy","policy",463,"2026-10-05T23:16:24.000Z",{"name":60,"slug":61,"count":62,"latest_published_at":63},"Deals","deals",373,"2026-10-06T08:09:42.000Z",{"name":65,"slug":66,"count":67,"latest_published_at":68},"Hardware","hardware",211,"2026-10-05T21:14:08.000Z",{"name":70,"slug":71,"count":72,"latest_published_at":73},"Science","science",182,"2026-10-05T18:58:12.000Z",{"name":75,"slug":76,"count":77,"latest_published_at":78},"Consumer Tech","consumer-tech",162,"2026-10-06T09:00:14.000Z",{"name":80,"slug":81,"count":82,"latest_published_at":83},"Software","software",103,"2026-10-05T18:23:19.000Z",{"name":85,"slug":86,"count":87,"latest_published_at":88},"Dev Tools","dev-tools",99,"2026-10-05T10:47:06.000Z",{"name":90,"slug":91,"count":92,"latest_published_at":93},"Startups","startups",96,"2026-10-05T20:24:09.000Z",{"name":95,"slug":96,"count":97,"latest_published_at":98},"Gaming","gaming",54,"2026-10-05T19:07:04.000Z",{"name":100,"slug":101,"count":102,"latest_published_at":103},"General","general",53,"2026-10-05T22:05:42.000Z",{"name":105,"slug":106,"count":107,"latest_published_at":108},"Reviews","reviews",33,"2026-10-05T11:57:17.000Z",{"name":110,"slug":111,"count":112,"latest_published_at":113},"How-To","how-to",8,"2026-10-05T09:00:00.000Z"]