
CVE-2026-35568 MCP Java SDK is the official Java SDK for Model Context Protocol servers and clients. Prior to 1.0.0, the java-sdk contains a DNS rebinding vulnerability. This vulner… https://www.cve.org/CVERecord?id=CVE-2026-35568
Post summary
The post announces a DNS rebinding vulnerability in MCP Java SDK versions prior to 1.0.0, providing technical details but no proof of concept, exploitation code, active attacks, or patch information.

