Skip to content
The Nexus
DossierENTITY

Starlette

Coverage of Starlette in the Nexus archive.

Earliest in view: May 26 · 09:07 UTCMost recent: May 26 · 19:50 UTC
Co-mentioned in this coverage
Recent coverage
  • SECURITYMay 26 · 19:50 UTCARS TECHNICA
    Millions of AI agents imperiled by critical vulnerability in open source package

    A critical vulnerability in the Starlette open-source framework, used by millions of AI agents and tools, allows hackers to breach servers and steal sensitive data. Starlette, with 325 million weekly downloads, underpins frameworks like FastAPI and enables access to external systems via the Model Context Protocol (MCP), making stolen credentials highly valuable.

  • SECURITYMay 26 · 09:07 UTCHACKER NEWS
    BadHost – CVE-2026-48710: Starlette Host-Header Auth Bypass

    A security vulnerability (CVE-2026-48710) in the Starlette Python web framework allows attackers to bypass host-header authentication, as reported by Ars Technica. The flaw could enable unauthorized access to web applications using Starlette, with discussions ongoing on Hacker News.