[RSS OUTLETS]score: 0.85
Critical 'BadHost' Vulnerability Found in Starlette, 325M Weekly Downloads
May 26, 2026
A critical vulnerability dubbed 'BadHost' in Starlette — a Python ASGI framework with 325 million weekly downloads — puts millions of AI agents and web services at risk of exploitation.
HOW THIS AFFECTS YOU
●
builderYou need to audit and patch any services or AI agent infrastructure using Starlette immediately given the 325M weekly download exposure surface.
●
policyThis changes the risk calculus for AI agent deployments at scale, as a single open-source dependency vulnerability can compromise millions of autonomous systems simultaneously.