Petrus[verified]@Pete_yes_pleaseActive Exploitation
The post confirms multiple MCP-related breaches, including CVE‑2025‑49596, with real, documented exploitation but no PoC, tools, or patches. It signals active exploitation in the wild.
Danny Livshits[verified]@dannylivshitsActive Exploitation
The text confirms active exploitation of CVE‑2025‑49596 via WhatsApp and indicates that a PoC exists, but no patch or specific mitigation is provided.
森見 | AI・セキュリティ解説@morimi_morimiActive Exploitation
The passage reports that a malicious MCP package was used to exfiltrate email data for two weeks, while CVE-2025-49596 permits unauthenticated remote command execution.
Gagan Suie@gagansuieDisclosure
The text discloses two critical vulnerabilities (CVE-2025-49596 and CVE-2025-6514) in MCP components, providing vulnerability types, CVSS scores, and root cause details without mentioning patches, PoCs, or active exploitation.
Techgines@nxtgen579255Disclosure
The NSA released its first formal advisory on MCP security vulnerabilities (CVE-2025-49596), noting that MCP adoption has outpaced its security model, but it does not provide PoC, exploit, patch, or detailed technical specifics.
Lytical Ventures@LyticalVenturesActive Exploitation
The tweet highlights that thousands of Clawdbot servers are exposed to CVE-2025-49596, enabling attackers to hijack AI agents, and urges users to secure MCP servers.