logo

Millions of AI agents imperiled by critical vulnerability in open source package

ID: ddd445ec-8646-5025-b211-d38acecdb1f2

STIX ID: report--ddd445ec-8646-5025-b211-d38acecdb1f2

Feed Name: Security - Ars Technica

Threat Score
78/100

Date Published: 2026-05-26

Date Updated: 2026-05-27

Author: Dan Goodin

...
...

**Executive summary:** A critical vulnerability dubbed BadHost (CVE-2026-48710) in the Starlette ASGI framework allows a single-character HTTP Host header injection to bypass path-based authorization, trivially exposing servers—particularly AI tooling and MCP servers built on Starlette (including FastAPI, vLLM, LiteLLM)--to credential theft and unauthorized access; a patch (Starlette 1.0.1) has been released.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.