How Secure Is Your MCP Gateway? Lessons from a Year of Incidents
Blog post from CData
MCP security research from 2025 to early 2026 identified recurring risks involving malicious packages, unauthenticated servers, weak encryption, and widespread reliance on static API keys, with the Smithery.ai path traversal vulnerability serving as a prominent example of shared-hosting exposure. In that incident, an unvalidated Docker build-path setting could have allowed a malicious repository to obtain an overprivileged fly.io token, potentially affecting more than 3,000 hosted MCP applications, although Smithery patched the issue within 48 hours and no confirmed exploitation was reported. The discussion argues that centralized platforms executing user-controlled code can create supply-chain-style blast radii because MCP servers sit between AI agents and sensitive enterprise systems. It recommends that enterprises assess managed MCP providers according to credential isolation, use of short-lived and revocable authentication, access controls, audit logging, and the extent to which user-controlled build processes run on shared infrastructure. CData Connect AI is presented as an alternative architecture using vendor-maintained connectors, per-user or per-connection credentials, optional Azure Key Vault integration, supported OAuth and SSO options, granular permissions, and query and audit logs, while noting that security ultimately also depends on the authentication capabilities and policy configuration of connected data sources.
| Trend | Post Mentions | Total Month Mentions | Posts | Companies | MoM |
|---|---|---|---|---|---|
| MCP | 32 | 7,755 | 814 | 203 | -3% |
| Secrets Management | 6 | 2,324 | 403 | 114 | +18% |
| AI Agents | 3 | 5,657 | 1,451 | 270 | -3% |
| Harness engineering | 1 | 199 | 112 | 59 | +2% |
| Real-time | 1 | 6,790 | 1,736 | 269 | -9% |
Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.