06:46
2026-08-25
news.ycombinator.com
ai-safety
I found an SSRF in Google's official AI tooling, and how Google reacted
A security researcher found a server-side request forgery (SSRF) vulnerability in Google's MCP Toolbox, the official server for connecting language-model agents to databases and HTTP APIs, which could…