AgentsCVE-2026-26057 — Cisco AI Skill Scanner Has Its Own VulnerabilityGitLab Advisory·high signalXBlueskyLinkedInCopy linkIronic: Cisco skill-scanner API server binds to multiple interfaces allowing DoS and arbitrary file upload. Patched in 1.0.2.SourceSource pageGitLab Advisory↳ Follow the threadStack layer / Threat patternMicrosoft Agent Framework Python 1.14.0 adds Mistral, spins Durable Task out to its own repo, and blocks Windows junctions in skill discoveryGitHub (microsoft/agent-framework)Stack layer / Threat patternAttackers began exploiting SharePoint CVE-2026-55040 on August 13, hours after a public proof-of-conceptThe Hacker NewsStack layer / Threat patternVercel Labs' deepsec Is an Agent-Powered Vulnerability Scanner You Run on Your Own Infrastructure — and It Tells You Scans Cost ThousandsGitHubPolicy dependency / Stack layerOpenAI Codex Rolls GPT-5.4 Selections to GPT-5.6 Terra/Luna and Sets an Aug 31 Cutoff for ChatGPT-Signed-In UsersOpenAI Codex ChangelogStack layer / Update threadWriter Ships Palmyra X6 Post-Trained on Z.ai's GLM-5.2 and Claims a 52% Cheaper Agent — the Harness, Not the Model, Is the Cost LeverTechCrunch (corroborated by VentureBeat)Stack layer / Threat patternHARD: let the agent evolve its own runtime defenses instead of hand-writing guardrailsarXivStack layer / Update threadmodlens v3.16.6 Fixes a Validator That Rejected the Exact Shape Models Reach For — `null` in an Optional FieldGitHubStack layer / Contrastmcp-stama Ships a Zero-Dependency Rust MCP Server Claiming <2ms Cold Start vs 1.5–3s for Node and PythonGitHub / Hacker News