build1 distinct publisher
Metadata discovery turns an MCP client into an unauthenticated fetch primitive
A researcher found the SSRF guard sitting on the credential-submission side of an MCP auth SDK while the .well-known discovery fetch ran unchecked from the public entry point, which is the wrong end of the flow to protect.
Publishers:dev.to
Reality
- Evidence45
- Adoption
- Insufficient
- Hype gap+28
- Incentives55