The AI Agent Security Hole Hidden Inside the MCP Specification — type0 | type0