Skip to finding
important · Remote code execution

An unauthenticated Bifrost management API can load attacker-supplied native code under narrow build conditions.

Affects

Bifrost HTTP transport, an open-source gateway for routing requests among AI-model providers, on dynamically linked Linux builds.

With dashboard authentication disabled or unconfigured, a caller can register a custom plugin URL that a dynamically linked, plugin-capable build downloads and passes to Go's plugin loader.

Detail and 4 sources
Share this finding
Get it by email

The same brief, every morning. One email a day, nothing else.

Every finding here carries a source that was checked before it published. If something is wrong, write to admin@fullchain.sh — corrections are published on the day they affect.

Tuesday, September 8, 2026