3 posts
#ai-agents
The Real BadHost Risk: MCP Servers, vLLM, and the Proxy Gap
CVSS 6.5 misses the mark. Why MCP servers and proxy-less AI agent stacks face disproportionate exposure from BadHost.
Creeta
Robinhood Agentic Trading 2026: MCP, Sandbox Design, and Risk
Robinhood's MCP agentic trading beta: sandbox isolation, guardrails, and developer implications.
Creeta
Starlette BadHost: CVE-2026-48710 Auth Bypass in AI Agent Stacks
Starlette BadHost (CVE-2026-48710): a crafted Host header bypasses auth middleware. Unproxied AI agents at highest risk.
Creeta
Showing 3 of 3 posts


