Critical Bifrost AI Gateway Flaw Lets Attackers Run Commands Without Credentials
Overview
A serious vulnerability has been discovered in Bifrost, an open-source AI gateway that connects to over 20 large language model (LLM) providers. This flaw, identified as CVE-2026-90898, carries a CVSS score of 9.8, indicating its severity. It allows attackers to execute arbitrary commands on the gateway server without needing any credentials, simply by sending a single HTTP request. All versions of Bifrost HTTP transport prior to 2.1.0 are affected. This vulnerability could lead to significant risks for organizations using Bifrost, as it could enable attackers to manipulate or compromise systems that rely on this gateway. Users and administrators are urged to take immediate action to secure their deployments.
Key Takeaways
- Affected Systems: Bifrost, all versions of Bifrost HTTP transport before 2.1.0
- Action Required: Upgrade to Bifrost HTTP transport version 2.
- Timeline: Newly disclosed
Original Article Summary
A critical vulnerability in Bifrost, an open-source AI gateway that routes requests to more than 20 LLM providers, allows an unauthenticated attacker to run arbitrary commands on the gateway server with a single HTTP request. The flaw, tracked as CVE-2026-90898 (CVSS score: 9.8), affects all versions of the Bifrost HTTP transport before 2.1.0 when management authentication is
Impact
Bifrost, all versions of Bifrost HTTP transport before 2.1.0
Exploitation Status
The exploitation status is currently unknown. Monitor vendor advisories and security bulletins for updates.
Timeline
Newly disclosed
Remediation
Upgrade to Bifrost HTTP transport version 2.1.0 or later to mitigate the vulnerability. Ensure proper management authentication is configured.
Additional Information
This threat intelligence is aggregated from trusted cybersecurity sources. For the most up-to-date information, technical details, and official vendor guidance, please refer to the original article linked below.
Related Topics: This incident relates to CVE, Vulnerability, Critical.