Related Threat Clusters
-
Critical Unauthenticated RCE Vulnerability in LiteLLM Exploited in the Wild
A critical command injection vulnerability, CVE-2026-42271, in LiteLLM, an open-source AI gateway, allows unauthenticated remote code execution (RCE) when chained with CVE-2026-48710, a Host header validation bypass in…
17 articles · Updated June 9, 2026 -
SonicWall SMA1000 Faces Critical Zero-Day Exploitation
SonicWall disclosed two critical vulnerabilities in its SMA1000 series appliances, CVE-2026-83548 and CVE-2026-83549, which are being actively exploited. CVE-2026-83548 is a pre-authentication server-side request…
40 articles · Updated September 2, 2026 -
CISA Adds Seven Exploited Vulnerabilities; IBM Warns of Langflow OSS Flaws
CISA has added seven new vulnerabilities to its Known Exploited Vulnerabilities Catalog, including CVE-2026-9586, a SQL injection vulnerability in Sangoma Switchvox, and several others affecting SonicWall and JFrog…
7 articles · Updated September 2, 2026 -
Critical BadHost Vulnerability Exposes AI Applications to Authentication Bypass
A severe vulnerability known as BadHost (CVE-2026-48710) has been identified in the Starlette framework, affecting millions of AI applications, including those built on FastAPI. This flaw allows unauthenticated…
16 articles · Updated May 26, 2026 -
Critical Security Bypass in Python-Starlette Affects Fedora 43 and 44
A critical security vulnerability, CVE-2026-48710, has been identified in Python-Starlette, affecting Fedora 43 and 44. The flaw allows a security restriction bypass via a malformed HTTP Host header. Systems running…
2 articles · Updated June 5, 2026 -
Critical RCE Vulnerability in Cisco Nexus 9000 Switches Disclosed
On September 2, 2026, Cisco disclosed a critical vulnerability (CVE-2026-20212) affecting its Nexus 9000 Series Switches equipped with Silicon One ASICs. This flaw allows unauthenticated remote attackers to execute code…
12 articles · Updated September 3, 2026
Recent Intelligence Reports
- CISA Adds 7 Exploited Flaws as Attackers Target AI Infrastructure — Esecurityplanet · September 4, 2026
- Cisco Nexus 9000 Silicon One RCE Exposes AI Data Center Fabric to Root Compromise — Tech.Yahoo · September 3, 2026
- Cisco Nexus 9000 Silicon One RCE Exposes AI Data Center Fabric to Root Compromise — Forkast.News · September 3, 2026
- CISA Adds Seven Exploited Flaws as Attackers Deploy Reverse Shells and Crypto Miners — Thehackernews · September 3, 2026
- CISA Adds Seven Known Exploited Vulnerabilities to Catalog — Cisa · September 2, 2026
- CVE-2026-42271 Chained with CVE-2026-48710 — horizon3.ai · June 9, 2026
- Active Exploitation Alert: CVE-2026-42271 and CVE-2026-48710 — Rescana · June 9, 2026
- LiteLLM Vulnerability Enables Unauthenticated Remote Code Execution — Letsdatascience · June 9, 2026