CRITICAL
GHSASUPPLY-CHAINLLM01: Prompt InjectionAML.T0051
netlicensing-mcp: REST Path Traversal Bypasses Token Redaction
MCP tool bypasses token redaction, exposing admin-level API key values
6 CRIT · THREAT RED · 6 items · Generated in 314s
MCP tool bypasses token redaction, exposing admin-level API key values
dbt platform tokens stolen via unauthenticated OAuth endpoint
vLLM versions >= 0.6.3 and < 0.9.0 contain ReDoS vulnerabilities
vLLM versions >= 0.10.2 and < 0.13.0 are vulnerable to crashes or resource exhaustion due to missing sparse tensor validation
Improper authorization due to unknown function in file
Vulnerability in BerriAI litellm allows remote improper authorization
No new AI-centered threat headlines found.