← registry

Critical Bifrost AI Gateway Flaw Lets Attackers Run Commands Without Credentials

A critical vulnerability in the Bifrost AI gateway allows unauthenticated attackers to execute arbitrary commands on the server through a single HTTP request, affecting all versions prior to 2.1.0.

Categorysupply_chain
Severitycritical
AI systemother
Sectorstechnology
Harm typessecuritylegal_regulatory
Lifecycle stagedeployment
Actorexternal_attacker
Published2026-09-22 16:41:12

Summary is Secursion's own; full text lives at the source. Attribution preserved.