
1claw AI@1clawAI
Disclosure
A popular Figma MCP server just handed shell access to anyone who could poison a link (CVE-2025-53967). Scanning skills before install helps, but it is not the fix. A skill already running still calls your vault. The fix: the agent never holds the secret worth stealing.
Post summary
CVE-2025-53967 exploits a link-poisoning flaw in a Figma MCP server to grant shell access; the mitigation is to prevent the agent from holding sensitive secrets.
110100343
1.8K followersView on X
