Related Threat Clusters
-
Critical Remote Code Execution Flaw Discovered in Flowise MCP Server
Flowise has disclosed a critical remote code execution vulnerability, tracked as CVE-2026-56274, affecting versions prior to 3.1.2 of its Custom MCP Server feature. The flaw allows attackers to exploit multiple OS…
2 articles · Updated June 23, 2026 -
Critical Flowise RCE Vulnerability Exploited, Thousands of Systems at Risk
A critical remote code execution (RCE) vulnerability in the Flowise low-code platform, tracked as CVE-2025-59528, is being actively exploited by threat actors. This flaw allows attackers to inject arbitrary JavaScript…
4 articles · Updated April 7, 2026 -
Critical Langflow RCE Vulnerability Exploited Within 20 Hours
A critical vulnerability in Langflow, tracked as CVE-2026-33017, allows unauthenticated remote code execution (RCE) via the POST /api/v1/build_public_tmp/{flow_id}/flow endpoint. This flaw was exploited within 20 hours…
17 articles · Updated March 20, 2026 -
Critical RCE Vulnerability Discovered in Flowise's MCP Implementation
Obsidian Security identified a critical one-click remote code execution (RCE) vulnerability in Flowise (CVE-2026-40933), affecting self-hosted deployments. The flaw allows attackers to execute arbitrary server-side code…
2 articles · Updated June 1, 2026 -
Multiple Vulnerabilities Discovered in Flowise Affecting User Data and System Security
On April 20, 2026, Tenable reported multiple vulnerabilities in Flowise, a software platform. The vulnerabilities include an insecure implementation of the Faiss and SimpleStore vector store, which allows authenticated…
5 articles · Updated April 20, 2026 -
Anthropic's Claude Mythos Preview Sparks Cybersecurity Revolution
Anthropic has announced the launch of Project Glasswing, utilizing its unreleased AI model, Claude Mythos Preview, to identify and exploit thousands of critical software vulnerabilities across major operating systems…
1399 articles · Updated April 7, 2026 -
Critical Vulnerability in MCP Protocol Exposes 200,000 AI Servers to Remote Code Execution
A report by OX Security has identified a critical vulnerability in the Model Context Protocol (MCP) developed by Anthropic, potentially exposing over 200,000 AI servers to remote code execution. The flaw lies in the…
12 articles · Updated April 16, 2026 -
Design Flaw in MCP Endangers 200K Servers, Researchers Warn
A design flaw in Anthropic's Model Context Protocol (MCP) threatens approximately 200,000 servers with complete takeover, according to the Ox research team. Despite multiple requests for a patch, Anthropic maintains…
2 articles · Updated April 16, 2026 -
Cyber Attackers Exploit AI Infrastructure for API Key Theft and RCE
Cyber attackers are increasingly targeting AI infrastructure, particularly systems like LiteLLM and RAGFlow, to steal API keys and hijack computing resources. Research from Wiz.io indicates that over a 90-day period,…
2 articles · Updated August 28, 2026 -
Critical Vulnerabilities Discovered in AI Orchestration Platforms
Research presented at DEFCON 34 revealed 14 critical and high severity vulnerabilities across seven AI orchestration platforms, including NocoBase, Flowise, Langflow, Dify, Activepieces, Kestra, and Apache Airflow.…
2 articles · Updated August 18, 2026
Recent Intelligence Reports
- Hackers Target AI Infrastructure With RCE and API Key Theft — Cypro · August 28, 2026
- Hacking your life with AI can get you hacked: How AI orchestration platforms ship RCE by design — Reddit · August 18, 2026
- Hacking your life with AI can get you hacked — Endorlabs · August 18, 2026
- Six Flowise Vulnerabilities Enable Remote Code Execution on AI Workflow Servers — Gbhackers · August 4, 2026
- Six Flowise RCE Flaws Let Attackers Execute Code on AI Workflow Servers — Cybersecuritynews · August 4, 2026
- Critical Flowise MCP Bypass Allows Remote Code Execution — Mallory.Ai · June 23, 2026
- When Is Stdio Mcp Actually A Vulnerability — www.obsidiansecurity.com · June 1, 2026
- Flowise’s MCP implementation can run ghost commands — Csoonline · June 1, 2026