Articles
Daily digests summarizing the vulnerabilities and incidents tracked by VulnWatch.
-
· 11 entries · daily · Subscribers only
VulnWatch Daily: Open WebUI Auth Bypasses and APM Supply Chain Risks
Today's digest highlights critical access control failures in Open WebUI and supply chain vulnerabilities in Microsoft APM. MLflow and AVideo also report high-severity issues.
-
· 41 entries · daily · Subscribers only
VulnWatch Daily: Critical Agent RCE and Open WebUI Access Control Flaws
41 new vulnerabilities reported today, including critical RCE in DeepSeek TUI and widespread access control failures in Open WebUI. Immediate patching recommended for AI agent frameworks.
-
· 9 entries · daily · Subscribers only
VulnWatch Daily: Agentic Auth Bypasses and CLI RCE Risks Surge
Critical MCP authorization flaws and local CLI RCE vulnerabilities dominate today's digest. Security teams must audit agent tooling and desktop clients immediately.
-
· 19 entries · daily · Subscribers only
VulnWatch Daily: Agentic Platform Risks & MCP Server Exposures
Critical vulnerabilities in JunoClaw and MCP servers highlight agentic security gaps. Enterprise copilots and inference engines also face injection and stability risks.
-
· 19 entries · daily · Subscribers only
VulnWatch Daily: Critical MCP RCEs and Auth Bypasses Flood AI Stack
May 11 brings critical flaws in MCP servers, MLflow, and Open WebUI. Immediate patching required for agentic frameworks and model serving platforms.
-
· 99 entries · weekly
VulnWatch Weekly: Agentic RCE Surge & LiteLLM Exploitation
Critical RCEs plague agent platforms like FastGPT and PraisonAI. LiteLLM SQLi is actively exploited. Supply chain risks rise with PyTorch Lightning compromise.
-
· 1 entry · daily · Subscribers only
Spring AI Milvus Vector Store Injection Flaw Exposes RAG Pipelines
High severity CVE-2026-41705 allows filter-expression injection in Spring AI's MilvusVectorStore. Enterprise RAG systems risk unauthorized data deletion and leakage. Immediate patching required.
-
· 36 entries · daily · Subscribers only
VulnWatch Daily: Critical RCE Surges in AI Agent Sandboxes and Gateways
36 vulnerabilities disclosed today highlight severe RCE risks in FastGPT, LiteLLM, and Open WebUI. Immediate patching recommended for agent platforms and model gateways to prevent compromise.
-
· 15 entries · daily · Subscribers only
VulnWatch Daily: Supply Chain Compromises and Agentic SSRF Risks
Critical supply chain compromises hit PyTorch Lightning while new SSRF vectors emerge in MCP servers. Plus, sandbox escapes in vm2 and widespread Copilot injection flaws.
-
· 11 entries · daily · Subscribers only
VulnWatch Daily: Critical Agent RCE and Multi-Tenant Isolation Failures
Eleven new vulnerabilities impact AI infrastructure today, including critical RCE in PraisonAI and multi-tenant isolation bugs in Axonflow. Immediate patching is recommended for model serving and agent frameworks.
-
· 19 entries · daily · Subscribers only
VulnWatch Daily: Critical MCP Server Flaws and Agent RCE Risks Surge
Today's digest highlights critical path traversal and prompt injection flaws in MCP servers and AI agents, including Langflow and SQLBot. Immediate patching is recommended for exposed instances.
-
· 30 entries · weekly
Langflow Floods, MCP Risks, and Ollama Windows RCE
This week saw a cascade of vulnerabilities in IBM Langflow, critical RCE risks in Ollama for Windows, and emerging threats in the Model Context Protocol ecosystem. Security teams must prioritize patching agentic frameworks and securing local AI deployments.
-
· 12 entries · daily · Subscribers only
VulnWatch Daily: Critical RCE in Agentic Frameworks and Ollama Memory Leaks
Today's digest highlights critical command injection flaws in Evolver and PPTAgent, alongside high-severity memory leaks in Ollama. Platform teams should prioritize patching agent runtimes and reviewing file upload policies.
-
· 2 entries · daily · Subscribers only
Langflow RCE Flaws Threaten AI Orchestration Integrity
Two remote code injection vulnerabilities in Langflow 1.8.4 expose AI pipelines to manipulation. Public exploits available; vendor unresponsive. Patch immediately.
-
· 4 entries · daily · Subscribers only
VulnWatch Daily: SGLang Deserialization and MCP Server Auth Flaws
Critical vulnerabilities detected in SGLang tokenizers and NextChat MCP integrations. Security teams must audit model serving paths and tool authorization policies immediately.