Bleeding Llama: CVE-2026-7482 and what Ollama’s GGUF loader hands an attacker
CVE-2026-7482 turns Ollama’s /api/create into a heap-read primitive that exfiltrates prompts, system messages, and process environment variables through a crafted GGUF tensor shape. Patch to 0.17.1; everything else is a stopgap.