ASR AI Security Radar
Back to homepage

Recent AI Security Incidents

This archive includes all published incident pages. Page 4 of 18.

Each page is intended to help a security team answer three questions quickly: why the issue is AI-relevant, what part of the workflow may be exposed, and what actions should happen first.

Selection criteria and correction policy are documented in Methodology & Editorial Policy.

AI security incident: parse-server's endpoint /loginAs allows readOnlyMasterKey to gain full read and write...

Incident date: March 6, 2026 | Published: March 6, 2026

parse-server's endpoint /loginAs allows readOnlyMasterKey to gain full read and write access as any user Impact The readOnlyMasterKey can call POST /loginAs to obtain a valid session token for any user.

Read details

AI security incident: GitHub Copilot CLI Dangerous Shell Expansion Patterns Enable Arbitrary Code Execution...

Incident date: March 6, 2026 | Published: March 6, 2026

GitHub Copilot CLI Dangerous Shell Expansion Patterns Enable Arbitrary Code Execution Summary A security vulnerability has been identified in GitHub Copilot CLI's shell tool that could allow arbitrary code execution through crafted bash...

Read details

AI security incident: Pingora vulnerable to HTTP Request Smuggling via Premature Upgrade (GHSA-xq2h-p299-vjwv)

Incident date: March 5, 2026 | Published: March 5, 2026

Pingora vulnerable to HTTP Request Smuggling via Premature Upgrade Impact Pingora versions prior to 0.8.0 would immediately forward bytes following a request with an Upgrade header to the backend, without waiting for a 101 Switching...

Read details

AI security incident: Gogs: Release tag option injection in release deletion (GHSA-v9vm-r24h-6rqm)

Incident date: March 5, 2026 | Published: March 5, 2026

Gogs: Release tag option injection in release deletion Summary There is a security issue in Gogs where deleting a release can fail if a user-controlled tag name is passed to Git without the right separator, allowing Git...

Read details

AI security incident: Gogs: Cross-repository LFS object overwrite via missing content hash verification (GH...

Incident date: March 5, 2026 | Published: March 5, 2026

Gogs: Cross-repository LFS object overwrite via missing content hash verification Summary Overwritable LFS object across different repos leads to supply-chain attack, all LFS objects are vulnerable to be maliciously overwritten by...

Read details

AI security incident: SVGO DoS through entity expansion in DOCTYPE (Billion Laughs) (GHSA-xpqw-6gx7-v673)

Incident date: March 4, 2026 | Published: March 4, 2026

SVGO DoS through entity expansion in DOCTYPE (Billion Laughs) Summary SVGO accepts XML with custom entities, without guards against entity expansion or recursion.

Read details

AI security incident: Fickling missing RCE-capable modules in UNSAFE IMPORTS (GHSA-5hwf-rc88-82xm)

Incident date: March 4, 2026 | Published: March 4, 2026

Fickling missing RCE-capable modules in UNSAFE IMPORTS Assessment The modules uuid, osx support and aix support were added to the blocklist of unsafe imports (https://github.

Read details

AI security incident: Fickling has always check safety() bypass: pickle.loads and pickle.loads remain unhoo...

Incident date: March 4, 2026 | Published: March 4, 2026

Fickling has always check safety() bypass: pickle.loads and pickle.loads remain unhooked Assessment The missing pickle entrypoints pickle.loads, pickle.loads, and pickle.load were added to the hook https://github.

Read details

AI security incident: jackson-core has Nesting Depth Constraint Bypass in UTF8DataInputJsonParser potential...

Incident date: March 4, 2026 | Published: March 4, 2026

jackson-core has Nesting Depth Constraint Bypass in UTF8DataInputJsonParser potentially allowing Resource Exhaustion Summary The UTF8DataInputJsonParser, which is used when parsing from a java.io.

Read details

AI security incident: Authlib: Setting alg: none and a blank signature appears to bypass signature verifica...

Incident date: March 4, 2026 | Published: March 4, 2026

Authlib: Setting alg: none and a blank signature appears to bypass signature verification Summary After upgrading the library from 1.5.2 to 1.6.0 (and the latest 1.6.

Read details