CyberSecurityBoardThreat Intel · CVEs · Products
Cyber Companies

HashiCorp Fixes Critical Terraform MCP Server Vulnerabilities

August 5, 2026

HashiCorp released Terraform MCP Server version 1.1.0 to address three vulnerabilities in the Streamable HTTP transport, including a CVSS 10.0 cross-tenant credential reuse flaw (CVE-2026-16498).