A critical flaw in ComfyUI's LoadTrainingDataset node lets unauthenticated attackers upload a malicious pickle shard and trigger arbitrary code execution through torch.load, exposing the most widely used Stable Diffusion interface.
A critical flaw in ComfyUI's LoadTrainingDataset node lets unauthenticated attackers upload a malicious pickle shard and trigger arbitrary code execution through torch.load, exposing the most widely used Stable Diffusion interface.
A two-stage exploit chain in vLLM's multimodal video processing bypasses ASLR through PIL exception leakage, then achieves heap overflow via a malicious JPEG2000 file, giving unauthenticated attackers code execution on inference servers.
A Censys scan found 12,520 publicly exposed MCP services — 40% with no authentication at all. Combined with 106 zero-days found in an automated academic scan and a CVSS 10.0 flaw in a popular MCP server, the AI agent infrastructure layer is becoming one of 2026's most under-patched attack surfaces.