There is a vulnerability in Starlette that allows an attacker to bypass auth. The latest version of Starlette addresses it. https://arstechnica.com/information-technology/2026/05/millions-of-ai-agents-imperiled-by-critical-vulnerability-in-open-source-package/ https://github.com/x41sec/poc/blob/master/starlette-host-header/README.md
There is a vulnerability in Starlette that allows an attacker to bypass auth. The latest version of Starlette addresses it.
https://arstechnica.com/information-technology/2026/05/millions-of-ai-agents-imperiled-by-critical-vulnerability-in-open-source-package/
https://github.com/x41sec/poc/blob/master/starlette-host-header/README.md