Critical Bifrost AI Gateway Flaw Lets Attackers Run Commands Without Credentials

Summary

A critical vulnerability in the open-source AI gateway Bifrost allows unauthenticated attackers to execute arbitrary commands on the server. The flaw, tracked as CVE-2026-90898, has a CVSS score of 9.8 and affects all versions prior to 2.1.0 when management authentication is not properly configured.

IFF Assessment

FOE

The vulnerability allows unauthenticated attackers to gain control of the Bifrost AI gateway, which could be used to compromise downstream AI models and sensitive data.

Severity

9.8 Critical

Defender Context

This vulnerability in Bifrost highlights the growing security risks associated with AI infrastructure. Defenders need to prioritize patching and secure configuration of AI gateways and LLM orchestration tools. Monitoring for unusual network traffic and unauthorized command execution on these systems is crucial.

Read Full Story →