Three vulnerabilities in Anthropic’s MCP Git server allow prompt injection attacks that can read or delete files and, in some cases, lead to RCE.
Vulnerabilities in Chainlit could be exploited without user interaction to exfiltrate environment variables, credentials, ...