chiprook
← Security
SecuritySeptember 26, 2026, 15:01

Bifrost MCP gateway hit by critical 9.8 vulnerability

Open-source AI gateway Bifrost has a critical flaw, CVE-2026-90898 (CVSS 9.8): the official Docker image binds the management API to 0.0.0.0 with authentication disabled, so a single POST to /api/mcp/client spawns an arbitrary command. Found by Yuval Moravchick of JFrog Security Research, patched in transports/v2.1.0.

Bifrost MCP gateway hit by critical 9.8 vulnerability
#Bifrost#MCP#JFrog
Read next
Security

Critical Bifrost AI Gateway Flaw Allows Unauthenticated Command Execution

Security

Cisco Secure Email Gateway hit by critical CVE-2026-76443 injection flaw

Security

CISA adds JFrog Artifactory auth bypass to exploited vulnerabilities list

Security

The AI Gateway Is Now a Credential Hub: What the LiteLLM MCP Authentication Bypass Means for Self-Hosted LLM Infrastructure