AI DevList

Issue #004 · September 13, 2026

AI DevList #004

The model is no longer the whole system. This week, the interesting failures — and some of the biggest performance differences — are showing up in the harness, context assembly, tool boundaries, evaluation layer and execution environment.

Agentic AI

AI Security & Red Teaming

Chainlit MCP SSRF — CVE-2026-45019 (opens in a new tab)

GitHub Security Advisory

When MCP support is enabled, affected Chainlit versions allowed unauthenticated clients to make the server issue arbitrary outbound requests, including requests toward internal services and cloud metadata endpoints.

Tools & Frameworks

Production & Evaluation

Enjoyed this issue?

Get the next one straight to your inbox.