The first Model Context Protocol flaw listed in the CISA Known Exploited Vulnerabilities catalog exposes a gap in how AI gateways authenticate between agents and tools.