Three popular plugins served malicious JavaScript through a compromised CDN.
Chrome's WebMCP guidance warns that AI agents can be manipulated through the tools they are built to trust.