A recent batch of SQLite vulnerability advisories was found to be fake, with none of the reported issues existing in the actual code. The advisories were submitted through a public form and were initially flagged as critical by NVD and CISA, but were later found to be AI-generated and lacking in evidence. The incident highlights a systemic issue with automated vulnerability ingestion and the potential for false or misleading reports to cause unnecessary work and waste resources. The article suggests that organizations should be cautious when dealing with newly published CVEs and verify the information before taking action.