Qeravio
Canonical AI event

Nightly Release Fixes SSRF Vulnerability in MCP OAuth

A security fix for SSRF in MCP OAuth metadata discovery and authentication was implemented by @josebalius.

27 Aug 20261 verified claims1 sources1 observations
What happened

The official source reports this update: Release v0.59.0-nightly.20260827.g3c311beac. What's Changed fix(core): prevent SSRF in MCP OAuth metadata discovery and authentication by @josebalius in #29081 Full Changelog : v0.59.0-nightly.20260826.g64b5b79a6...v0.59.0-nightly.20260827.g3c311beac

Why it matters

This official update documents a development concerning Release v0.59.0-nightly.20260827.g3c311beac. Its practical significance depends on the scope and evidence stated by the source.

What to watch next

Read the official source update and verify its stated scope, evidence and timing before acting on it.

Connected knowledge

Entities affected by this event

Evidence trail

Sources behind the event