news.mlab.sh
10 results
threat-intel

CISA Flags Langflow RCE, Tomcat, and N-central Flaws as Actively Exploited

The U.S. CISA has added three vulnerabilities to its KEV catalog, including a critical code injection flaw in Langflow, a Tomcat encryption bypass, and an authentication bypass in N-able N-central. These flaws are currently being actively exploited by a Chinese-speaking threat actor, leveraging AI tools to identify and…

The Hacker News · Aug 5, 2026 Critical