VulnWatch VulnWatch
← Back to dashboard
Unknown rss_thehackernews · rss_df47d13d8d896952ed574eb2d8872c90

CISA Flags Langflow RCE, Tomcat, and N-central Flaws as Actively Exploited

Published Aug 5, 2026

The U.S. Cybersecurity and Infrastructure Security Agency (CISA), on August 5, 2026, added three flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild.

The list of vulnerabilities is as follows -

CVE-2026-9198 (CVSS score: 9.8) - A code injection vulnerability in Langflow that allows unauthenticated attackers to achieve full remote

Affected AI Products

langflow
Get the weekly digest. Every Monday: top AI security stories of the week. Free.