Critical Bifrost AI Gateway Flaw Lets Attackers Run Commands Without Credentials
Summary
A critical vulnerability in the open-source AI gateway Bifrost allows unauthenticated attackers to execute arbitrary commands on the server. The flaw, tracked as CVE-2026-90898, has a CVSS score of 9.8 and affects all versions prior to 2.1.0 when management authentication is not properly configured.
IFF Assessment
The vulnerability allows unauthenticated attackers to gain control of the Bifrost AI gateway, which could be used to compromise downstream AI models and sensitive data.
Severity
Defender Context
This vulnerability in Bifrost highlights the growing security risks associated with AI infrastructure. Defenders need to prioritize patching and secure configuration of AI gateways and LLM orchestration tools. Monitoring for unusual network traffic and unauthorized command execution on these systems is crucial.