|
|
|
|
|
by Thorrez
78 days ago
|
|
For CVE-2026-0755, that's a vulnerability in gemini-mcp-tool. gemini-mcp-tool's Github repo says "This is an unofficial, third-party tool and is not affiliated with, endorsed, or sponsored by Google." but this list shows the Google logo next to the vulnerability. Also, it's not entirely obvious to me that the vulnerability was introduced by vibe coding. https://github.com/jamubc/gemini-mcp-tool Disclosure: I work at Google, but not on anything related to this. |
|
This whole website and everything around it are almost ironic.