The official MCP Python SDK lets a malicious server steal OAuth credentials
A flaw in the official Python SDK of the MCP protocol lets a malicious server redirect the client secret, the authorization code, and the PKCE proof key to a token endpoint it controls. Upgrade to 1.30.0 or 2.2.0, set the issuer parameter, and rotate your OAuth secrets.