
Command injection in MCP servers. Not surprised. CVE-2026-7446 hits mcp-server-semgrep, and CVE-2026-7416 hits xcode-mcp-server. Both let remote attackers inject OS commands with no auth needed. The attack surface on MCP servers keeps growing, and most of these community-built tools were never designed with security in mind. mcp-server-semgrep has a fix in v1.0.1, but who's checking their MCP server versions? Nobody. That's the problem. https://nvd.nist.gov/vuln/detail/CVE-2026-7446
Post summary
The tweet discloses CVE‑2026‑7446 and CVE‑2026‑7416, detailing command injection vulnerabilities that allow unauthenticated OS command execution, and notes a patch for mcp-server-semgrep.



