The MCP security news firehose now has a dedicated tracker
September alone, in no particular order: the official Kotlin SDK published two Streamable HTTP advisories (CVE-2026-63658, unauthenticated remote DoS via chunked encoding, CVSS 7.5; CVE-2026-63657, memory-exhaustion DoS via unterminated SSE, 6.5). The ssh-mcp maintainer rated a command-classifier bypass at CVSS 9.9 (GHSA-qvx5-rxrj-9vfh) — the read-only gate reads something different from what the shell executes, the fifth instance of the same defect class. Argo CD's MCP server took session takeover by anyone who could reach it: CVE-2026-82456, flat 10.0, fixed August 29. And the OX Security STDIO design flaw from April — an estimated 200,000 servers exposed to takeover — keeps spawning downstream CVEs because the flaw is architectural and every project patches it separately.
One feed now catalogs 771 MCP entities with verified facts. We track the security-relevant slice daily and publish the ones builders must act on — the raw scanner output lives on our sister site, and the running CVE table is on our tracker. The discipline that keeps this manageable: subscribe to one filtered tracker, map each advisory to your own inventory, and patch the class of bug everywhere it appears, not just the named package.
Vendor corner — 7-day context
(7-day context)
- Gemini 3.8 Live and 3.8 Live Extended Thinking — Google DeepMind (15 Sep) — {{L:Introducing Gemini 3.8 Live and 3.8 Live Extended Thinking}}: real-time conversational agent latency/thinking trade-offs move again; the “always-on live agent” form factor gets closer.
- Cognition helps Devin test its own work with GPT-6 Astra — OpenAI (11 Sep) — {{L:Cognition helps Devin test its own work with GPT-6 Astra}}: self-validation loops going mainstream; expect “agent reviews agent” patterns in production pipelines.
- OpenAI introduces the Safety Bug Bounty program (16 Sep headlines, via GNews) — {{L:Introducing the OpenAI Safety Bug Bounty program}}: security posture is now a marketed product feature across the agent stack — vendors compete on it.
Sources & further reading:
MCP News tracker · Live CVE tracker · Full Issue #001