Official Heroku MCP exploit lets attackers hijack app ownership via GET request

3 coderinsan 1 7/1/2025, 3:20:08 PM tramlines.io ↗

Comments (1)

rvz · 7h ago
Another day, another MCP exploit. This one in Anthropic's MCP inspector was reported the other day and it is a RCE graded at 9.4 severity: [0]

And no-one cares.

[0] https://news.ycombinator.com/item?id=44430029