Unauthenticated RCE Flaw in Langflow Actively Exploited, No Patch Available
A critical unpatched path traversal vulnerability (CVE-2026-5027, CVSS 8.8) in Langflow, a widely-used open-source AI application builder, is being actively exploited in the wild to achieve …
AML.T0047 - ML-Enabled Product or Service
AML.T0010 - ML Supply Chain Compromise
AML.T0040 - ML Model Inference API Access