The bug allows attacker-controlled model servers to inject code, steal session tokens, and, in some cases, escalate to remote ...
Configuration values are stored in .env.development and referenced in application.properties.