SourcesGemini MCP Tool 0-Day CVE-2026-0755 CVSS 9.8CyberSecurityNews·high signalXBlueskyLinkedInCopy linkCritical command injection in gemini-mcp-tool. execAsync passes user input directly to system call. CVSS 9.8, no official patch.SourceSource pageCyberSecurityNews↳ Follow the threadPolicy dependency / Stack layer'Do this as quickly as possible' repeatedly got a Claude session flagged by a corporate security directorr/ClaudeAIPolicy dependency / Stack layerConverting GUI Trajectories Into Replayable MCP-Style Calls Instead of Unstructured MemoriesarXiv 2609.16635Policy dependency / Stack layerCROSS-CATEGORY: On the Same Day, Anthropic Moved Into Documents and Decks While OpenAI Moved Into Ad Sales, CRM and EcommerceThe Next Web and Search Engine Land (two independent same-day writeups of two separate primary announcements)Policy dependency / Stack layerCodex makes Code Mode wrappers transparent to Guardian policy and adds read-only policy to MCP tool requestsGitHubStack layer / Threat patternTypeSafe AI ships Jev, a model that returns typed probabilistic values instead of text, at $0.042 per million input tokens and free outputTypeSafe AIStack layer / Threat patternEmergence World ran 10 agents per world for 16 days and found no frontier model contained an injected attack — one acted on poisoned memory 46 hours laterarXivPolicy dependency / Stack layerTip: Claude Code's Bash tool was re-sourcing your shell profile after every plugin reloadClaude Code ChangelogStack layer / Threat patternClaude Code makes the v2 MCP client and 2026-07-28 negotiation the default on Bedrock, Vertex and FoundryGitHub