logo

BadHost Exploit Exposes Sensitive AI Agent Server Endpoints

ID: 870d630a-d160-58c9-88e6-55cbedba7cd8

STIX ID: report--870d630a-d160-58c9-88e6-55cbedba7cd8

Feed Name: Cyber Press

Threat Score
78/100

Date Published: 2026-05-27

Date Updated: 2026-05-27

Author: Lucas Martin

...
...

A critical vulnerability named "BadHost" (CVE-2026-48710) in Starlette allows an attacker to inject path-altering characters into the Host header so that request.url.path diverges from the raw HTTP path, resulting in trivial authentication bypass and, in some setups, SSRF and remote code execution; the issue impacts FastAPI-based AI backends and popular inference servers, carries a CVSS 7.0 (High) rating, and was patched in Starlette 1.0.1 on May 21, 2026 with recommended mitigations including upgrading, using request.scope["path"] in middleware, and rejecting malformed Host headers at the proxy.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.