A critical SQL injection flaw in LiteLLM tracked as CVE 2026 42208 was exploited within 36 hours of disclosure, exposing AI gateway credentials and database access risks.
GreyNoise reports that 83 percent of Ivanti EPMM exploitation attempts are linked to a single IP on PROSPERO bulletproof hosting, targeting critical CVE-2026-1281 and CVE-2026-1340 vulnerabilities.