MIT researchers introduce generative AI for databases

A new tool makes it easier for database users to perform complex statistical analyses on table data without having to know what’s happening behind the scenes. GenSQL, a generative AI system for databases, can help users make predictions, detect anomalies, guess missing values, fix errors, or generate synthetic data with just a few keystrokes. For … Read more

Fast injection flaw in Vanna AI exposes databases to RCE attacks

Prompt Injection Flaw

Cybersecurity researchers have discovered a high-severity vulnerability in the Vanna.AI library that could be exploited to create remote code execution vulnerabilities via prompt injection techniques. The vulnerability, tracked as CVE-2024-5565 (CVSS score: 8.1), involves a case of fast injection in the “ask” function that can be abused to trick the library into executing arbitrary commands, … Read more