LangWatch Scenario — Open-Source Multi-Turn Red-Teaming Framework for AI Agents 2026-04-24 Security / AI CVEs / Research
OpenClaw — Six CVEs Cover Agentic Consent Bypass, RCE, SSRF, and Authorization Gaps 2026-04-24 Security / AI CVEs / Research
Paperclip AI — Unauthenticated RCE via Four-Flaw Authorization Chain (CVE-2026-41679) 2026-04-24 Security / AI CVEs / Research
TeamPCP — Checkmarx KICS Docker and Bitwarden CLI Compromised in Escalating Supply Chain Campaign 2026-04-24 Security / AI CVEs / Research
Vercel Breach via Context.ai — Third-Party AI Tool OAuth Cascade 2026-04-24 Security / AI CVEs / Research
Anthropic Officially Launches Project Glasswing — $100M Commitment, 12 Partners, Thousands of Zero-Days Found 2026-04-23 Security / AI CVEs / Research
“Comment and Control” — Prompt Injection Hijacks Claude Code, Gemini CLI & Copilot via GitHub 2026-04-23 Security / AI CVEs / Research
Comment and Control — Prompt Injection Leaks Secrets in Three AI Coding Agents 2026-04-23 Security / AI CVEs / Research
Forcepoint X-Labs Finds 10 Indirect Prompt Injection Payloads on Live Websites 2026-04-23 Security / AI CVEs / Research
LiteLLM PyPI Compromised — Multi-Stage Credential Stealer in 3M-Download Package 2026-04-23 Security / AI CVEs / Research
Lovable — BOLA Exposes AI Chat Histories and Database Credentials in Vibe Coding Platform 2026-04-23 Security / AI CVEs / Research
npm CanisterWorm — Self-Spreading Supply-Chain Attack Targets AI Agent Tooling 2026-04-23 Security / AI CVEs / Research
NVIDIA — Indirect AGENTS.md Injection in OpenAI Codex via Malicious Dependencies 2026-04-23 Security / AI CVEs / Research
Red Hat RHEL AI — Two InstructLab CVEs: Path Traversal & trust_remote_code RCE 2026-04-23 Security / AI CVEs / Research
Anthropic MCP Design Flaw Enables RCE Across the AI Ecosystem 2026-04-22 Security / AI CVEs / Research
Apache ActiveMQ CVE-2026-34197 — Claude Discovers 13-Year-Old RCE in 10 Minutes 2026-04-22 Security / AI CVEs / Research
Brex — CrabTrap Open-Source LLM-as-a-Judge Proxy for AI Agent Security 2026-04-22 Security / AI CVEs / Research
CSA Survey — 82% of Enterprises Have Unknown AI Agents in Their Environments 2026-04-22 Security / AI CVEs / Research
CVE-2026-26144: Excel XSS Chains to Copilot Agent for Silent Data Exfiltration 2026-04-22 Security / AI CVEs / Research