Langflow — Critical vulnerability CVE-2026-33309
Langflow CVE-2026-33309 enables attackers to compromise AI workflow application logic and underlying infrastructure, posing critical risks to AI agent deployment environments.
High-signal AI/security/automation notes.
Langflow CVE-2026-33309 enables attackers to compromise AI workflow application logic and underlying infrastructure, posing critical risks to AI agent deployment environments.
Lyptus Research study finds AI offensive cyber capabilities doubling every 5.7 months, with Opus 4.6 and GPT-5.3 Codex achieving 50% success rates on complex security tasks.
Critical pre-authentication remote code execution vulnerability in Marimo Python notebook framework allows attackers to gain full shell access without authentication.
CVE-2026-33032 exposes an unauthenticated MCP endpoint in nginx-ui (CVSS 9.8), enabling full nginx server takeover. Actively exploited in the wild with public PoC.
Oasis Security details Claudy Day, a chain of Claude.ai vulnerabilities enabling invisible prompt injection via URL parameters, conversation history exfiltration via Files API, and Google Ads targeting.
CVE-2026-39398 exposes critical sandbox bypass vulnerability in openclaw-claude-bridge where --allowed-tools flag fails to restrict CLI tool access, enabling potential arbitrary command execution with CVSS 7.5 severity.
OpenClaw CVE-2026-33579 allows attackers with basic pairing privileges to gain full administrative access, enabling complete instance takeover and data exfiltration — CVSS 8.1-9.8 severity.
OWASP GenAI Security Project publishes its quarterly exploit round-up for Q1 2026, covering eight major AI security incidents from Claude-assisted government breaches to Flowise RCE and supply chain attacks.
Praetorian researchers demonstrate how indirect prompt injection via user profile fields bypasses supervisor agent detection in multi-model AI customer service systems.
CVE-2026-39888 through CVE-2026-39891 reveal critical vulnerabilities in PraisonAI multi-agent systems enabling sandbox escape, remote code execution, and unauthorized data access.
CVE-2026-34938 exposes critical vulnerability in PraisonAI multi-agent systems where execute_code() function can run attacker-controlled Python code, enabling full system compromise.
CVE-2026-5483 (CVSS 8.5) in Red Hat OpenShift AI odh-dashboard exposes Kubernetes Service Account tokens via NodeJS endpoint, enabling unauthorized cluster access.
arXiv:2603.28655 — First framework combining symbolic and linguistic steganography into layered canary documents for detecting unauthorized LLM processing and AI-driven malware.
Token Security researchers discovered a critical Remote Code Execution vulnerability in Azure MCP server enabling unauthenticated attackers to compromise Azure environments and steal Entra ID credentials.