// research archive

Research

Case studies show the boundary, root cause, validation method, impact, and remediation. Working exploit material stays out of the public record.

MLflowPublished | CVE-2026-64849 | CVSS 9.3

Unauthenticated full-read SSRF in webhook delivery

A Critical SSRF flaw let an unauthenticated caller cross the MLflow server network boundary through webhook redirects and DNS rebinding.

Read case study
Google GenkitGoogle Cloud VRP recognition

Provider endpoint trust-boundary failure

SSRF, API-key exposure, and response forgery were validated in an AI SDK integration that accepted a caller-influenced provider endpoint.

Read case study
LMDeployPublished - CVE-2026-46517

Unsafe remote-code trust during model initialization

LMDeploy enabled Hugging Face remote code by default during model loading, removing the operator decision that peer inference systems expose as an explicit opt-in.

Read case study