Articles
Daily digests summarizing the vulnerabilities and incidents tracked by VulnWatch.
-
· 17 entries · daily · Subscribers only
VulnWatch Daily: Critical GitPython RCE, DeepSeek Auth Bypass, and vLLM Data Leaks
Today's digest highlights a critical config corruption flaw in GitPython enabling RCE, an authentication bypass in DeepSeek Harness, and cross-user data leakage in vLLM inference kernels.
-
· 4 entries · daily · Subscribers only
VulnWatch Digest: RPC Assertions, GGUF Overflows, and Supply Chain Risks
Today's briefing covers critical integrity flaws in llama.cpp RPC servers, integer overflows in Ollama's GGUF decoder, and supply chain prompt injection risks in Elixir tooling.
-
· 101 entries · weekly
VulnWatch Weekly: The Agentic Explosion & The LiteLLM Emergency
This week marks a turning point for AI security as agentic frameworks become the primary attack surface. With a known-exploited vulnerability in LiteLLM and critical RCEs in MCP hubs, immediate patching is required.
-
· 1 entry · daily · Subscribers only
VulnWatch Daily: JeecgBoot LLM Module Auth Bypass Analyzed
A low-severity authentication bypass in JeecgBoot's AI module allows remote manipulation of export functions via credential parameters, requiring immediate patching despite the low CVSS score.
-
· 2 entries · daily · Subscribers only
Axolotl RCE and Rowboat SSRF: Critical Risks in AI Tooling
New vulnerabilities in Axolotl and Rowboat expose AI pipelines to remote code execution and server-side request forgery, demanding immediate patching and configuration audits for ML platforms.
-
· 45 entries · daily · Subscribers only
VulnWatch Digest: Critical RCE in AI Agents and Widespread SSRF in Model Serving
Today's digest highlights critical remote code execution flaws in CodeWhale and LaVague agents, alongside a wave of SSRF vulnerabilities in OpenAI-compatible APIs. Immediate patching is required for multiple high-severity issues affecting Langflow, vLLM, and Hugging Face tokenizers.
-
· 18 entries · daily · Subscribers only
VulnWatch Daily: Critical RCE in Claude Code, SSRF in Unstructured, and Auth Bypasses
Today's digest highlights critical remote code execution in Claude Code Studio, full-read SSRF in the ubiquitous Unstructured library, and severe authentication bypasses in MISP and Copilot Studio affecting AI supply chains.
-
· 13 entries · daily · Subscribers only
VulnWatch Daily: Critical Agentic RCE and LiteLLM Auth Bypasses
Today's digest highlights critical vulnerabilities in agentic frameworks allowing shared bundle overwrites and RCE, alongside active exploitation of LiteLLM authentication flaws and supply-chain risks in model training data handlers.
-
· 7 entries · daily · Subscribers only
VulnWatch Daily: Critical RCE in Elasticsearch ML and Supply Chain Risks
Today's digest highlights a critical deserialization flaw in Elasticsearch ML enabling RCE, a recursion DoS in llama.cpp, and supply chain vulnerabilities in Scrapy and pnpm affecting AI data pipelines.
-
· 13 entries · daily · Subscribers only
MCPHub Critical Flaws and Agentic RCE Risks Dominate August 31 Vulnerability Landscape
A surge of critical vulnerabilities in MCPHub and Eclipse Theia exposes agentic systems to RCE, SSRF, and prompt injection attacks, demanding immediate patching and architectural review.
-
· 93 entries · weekly
VulnWatch Weekly: The MCP Security Crisis & Langflow RCE
This week marks a turning point for AI security with critical RCEs in Langflow and a systemic collapse of authentication in the Model Context Protocol (MCP) ecosystem. Immediate patching is required for Kubeflow, Langflow, and all exposed MCP servers.
-
· 5 entries · daily · Subscribers only
VulnWatch Digest: API Key Leaks, DOMPurify Bypasses, and Cleartext Secrets
Today's digest highlights critical credential exposure in NextChat and browser-use, a DOMPurify bypass in Readest enabling RCE, and data leakage flaws in Ash framework libraries affecting ML audit trails.
-
· 24 entries · daily · Subscribers only
VulnWatch Daily: Critical RCE in Langflow, Kubeflow SSRF, and Agent Supply Chain Risks
Today's digest highlights a catastrophic command execution chain in IBM Langflow, a CVSS 10.0 SSRF in Kubeflow Pipelines, and emerging risks in AI agent orchestration and LLM proxy authentication bypasses.
-
· 9 entries · daily · Subscribers only
Critical MCP Server Exposure and Supply Chain Risks in AI Agents
A wave of critical vulnerabilities exposes Model Context Protocol (MCP) servers to unauthenticated access and credential theft, while supply chain flaws threaten mobile AI integrations and data integrity.
-
· 4 entries · daily · Subscribers only
VulnWatch Daily: RCE in whichllm, GitLab CI Agent Flaws, and Fleet Data Leaks
Today's digest covers critical code injection in whichllm via HuggingFace filenames, command execution in GitLab's Claude agent, and sort-order oracle vulnerabilities in Fleet exposing enrollment secrets.