BadHost Vulnerability Exposes AI Agents, Evaluators, and LLM Gateways

2026-06-01 05:00 GMT · 1 day ago aimagpro.com

BadHost is a high-severity authentication bypass vulnerability in the widely used Python web framework Starlette, with 325 million weekly downloads. The flaw allows attackers to use malformed HTTP Host headers to bypass path-based access controls and access sensitive AI agent infrastructure, among other systems. By Sergio De Simone