MCP vulnerability case study: SQL injection in the Postgres MCP server
A nasty SQL injection bug in Anthropicâs now-retiredPostgres MCP serverlet attackers blow past read-only mode and run whatever SQL they wanted. The repo got archived back in May 2025âbut itâs far from dead. The unpatched package still racks up21,000 NPM installsand1,000 Docker pullsevery week...