Researchers have identified critical remote code execution (RCE) vulnerabilities in AI inference engines utilized by Meta, Nvidia, and Microsoft. These flaws could potentially allow attackers to exploit the frameworks,…
Critical remote code execution (RCE) vulnerabilities have been identified in AI inference frameworks from Meta, Nvidia, Microsoft, and open-source projects like vLLM and SGLang. These flaws arise from unsafe code reuse,…
SquareX researchers have identified a hidden MCP API in the Comet AI browser that enables embedded extensions to execute local commands and potentially take full control of users' devices. This API circumvents…