Veeam, Terraform MCP, Django Patch Critical Flaws, Led by CVSS 10.0 Cross-Tenant Bug
HashiCorp, Veeam, and the Django Software Foundation have released patches for 11 vulnerabilities across Terraform MCP Server, Veeam Service Provider Console, and…
HashiCorp, Veeam, and the Django Software Foundation have released patches for 11 vulnerabilities across Terraform MCP Server, Veeam Service Provider Console, and…
CVE-2026-16496 (CVSS 8.9) is a stateful-mode session isolation flaw in Terraform MCP Server. The credential cache uses the MCP session ID as…
Juan Pablo Martinez Kuhn of Coinspect reported CVE-2026-16496, a stateful-mode session isolation flaw in Terraform MCP Server. HashiCorp found the other two…