Worrying open source security issue ‘BadHost’ could affect millions of AI agents, experts warn
Secwest discloses CVE-2026-48710 (“BadHost”), a high-severity flaw in Starlette that lets attackers abuse malformed Host headers to bypass security checks and exfiltrate sensitive data Starlette supports frameworks like FastAPI and is widely used; researchers warn 7/10 score underestimates risk, with AI agent, biopharma, IoT and SaaS data potentially exposed The bug was fixed in version […]









