#langflow — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #langflow, aggregated by home.social.
-
CISA added three bugs to its KEV list. An N-able N-central authentication bypass is exploited in the wild to deploy RMM tools. Patch by August 7.
#Nable #Ncentral #CISA #KEV #CVE202618556 #ExploitedInTheWild #RMM #Langflow #ApacheTomcat #CyberSecurity #InfoSec
-
CISA added three bugs to its KEV list. An N-able N-central authentication bypass is exploited in the wild to deploy RMM tools. Patch by August 7.
#Nable #Ncentral #CISA #KEV #CVE202618556 #ExploitedInTheWild #RMM #Langflow #ApacheTomcat #CyberSecurity #InfoSec
-
⚠️ CRITICAL THREAT: CVE-2026-0770 in Langflow enables remote code execution via untrusted control sphere inclusion. Active exploitation is confirmed. Get the forensic detection and input hardening strategies required to secure your AI pipelines today. https://thecybermind.co/aigl
-
⚠️ CRITICAL THREAT: CVE-2026-0770 in Langflow enables remote code execution via untrusted control sphere inclusion. Active exploitation is confirmed. Get the forensic detection and input hardening strategies required to secure your AI pipelines today. https://thecybermind.co/aigl
-
CISA aggiunge Langflow e Joomla al catalogo KEV: una IDOR ruba le chiavi degli agenti AI, uno zero-day PHP infetta i siti in un solo POST
Quattro CVE critiche entrano nel catalogo Known Exploited Vulnerabilities di CISA: un IDOR cross-tenant in Langflow usato per rubare chiavi LLM e AWS, e due zero-day di file upload non autenticato in estensioni Joomla che regalano l'accesso Super User con una singola richiesta. -
CISA aggiunge Langflow e Joomla al catalogo KEV: una IDOR ruba le chiavi degli agenti AI, uno zero-day PHP infetta i siti in un solo POST
Quattro CVE critiche entrano nel catalogo Known Exploited Vulnerabilities di CISA: un IDOR cross-tenant in Langflow usato per rubare chiavi LLM e AWS, e due zero-day di file upload non autenticato in estensioni Joomla che regalano l'accesso Super User con una singola richiesta. -
Sysdig documented JADEPUFFER, the first agentic ransomware run end-to-end by an AI agent. It breached Langflow via CVE-2025-3248 and extorted a database.
#JADEPUFFER #AgenticRansomware #AI #Ransomware #Langflow #Sysdig #CyberSecurity #InfoSec
-
Sysdig documented JADEPUFFER, the first agentic ransomware run end-to-end by an AI agent. It breached Langflow via CVE-2025-3248 and extorted a database.
#JADEPUFFER #AgenticRansomware #AI #Ransomware #Langflow #Sysdig #CyberSecurity #InfoSec
-
📣🚨 Spotted: #JADEPUFFER, the first documented agentic ransomware operation in which an LLM agent abused a Langflow flaw, stole credentials, reached production MySQL, and destroyed Nacos config data.
Listen/Read: https://hackread.com/sysdig-jadepuffer-first-agentic-ransomware-operation/
-
📣🚨 Spotted: #JADEPUFFER, the first documented agentic ransomware operation in which an LLM agent abused a Langflow flaw, stole credentials, reached production MySQL, and destroyed Nacos config data.
Listen/Read: https://hackread.com/sysdig-jadepuffer-first-agentic-ransomware-operation/
-
CISA Flags Actively Exploited Langflow, Trend Micro Vulnerabilities
The Cybersecurity and Infrastructure Security Agency (CISA) has sounded the alarm on two major vulnerabilities, CVE-2025-34291 and CVE-2026-34926, currently being exploited by hackers, and is requiring federal agencies to patch them by June 4, 2026. These weaknesses, found in Langflow and Trend Micro Apex One, could…
#KnownExploitedVulnerabilities #Cve202534291 #Cve202634926 #Langflow #TrendMicro
-
Как мы построили корпоративную LLM-платформу: архитектура, грабли и выводы
Обычно внедрение AI в компаниях происходит по такому сценарию: собрали одного ассистента, показали руководству, получили аплодисменты. Потом второго, третьего — и через полгода получается зоопарк с разными ключами, моделями и неконтролируемым бюджетом. Вместо набора разрозненных ассистентов мы сразу пошли в платформу. В статье рассказываем, из чего она состоит, как эволюционировало наше железо, зачем понадобилось два слоя наблюдаемости и почему маркетплейсный RAG ломается на PDF-файлах. С графиками, схемой архитектуры и выводами, которые сами хотели бы прочитать год назад.
https://habr.com/ru/companies/sminex_developer/articles/1037438/
#ai #llm #openwebui #langflow #langfuse #litellm #vllm #openai
-
Agenti AI, workflow intelligenti e strumenti open source: quali vale davvero la pena provare nel 2026?
Ne ho raccolti diversi in Migliori strumenti AI agentici open source da usare nel 2026, confrontandoli per i vari utilizzi possibili:
🔗 https://www.risposteinformatiche.it/migliori-strumenti-ai-agentici-open-source-2026/
#AI #AIagents #OpenSource #Linux #Docker #Automation #UnoLinux #UnoOpenSource #Agenti #n8n #dify #crewai #flowise #langflow #autogen #haystack #openhands
-
Agenti AI, workflow intelligenti e strumenti open source: quali vale davvero la pena provare nel 2026?
Ne ho raccolti diversi in Migliori strumenti AI agentici open source da usare nel 2026, confrontandoli per i vari utilizzi possibili:
🔗 https://www.risposteinformatiche.it/migliori-strumenti-ai-agentici-open-source-2026/
#AI #AIagents #OpenSource #Linux #Docker #Automation #UnoLinux #UnoOpenSource #Agenti #n8n #dify #crewai #flowise #langflow #autogen #haystack #openhands
-
CVE Alert: CVE-2026-6543 - IBM - Langflow Desktop - https://www.redpacketsecurity.com/cve-alert-cve-2026-6543-ibm-langflow-desktop/
#OSINT #ThreatIntel #CyberSecurity #cve-2026-6543 #ibm #langflow-desktop
-
CVE Alert: CVE-2026-6543 - IBM - Langflow Desktop - https://www.redpacketsecurity.com/cve-alert-cve-2026-6543-ibm-langflow-desktop/
#OSINT #ThreatIntel #CyberSecurity #cve-2026-6543 #ibm #langflow-desktop
-
CVE Alert: CVE-2026-4503 - IBM - Langflow Desktop - https://www.redpacketsecurity.com/cve-alert-cve-2026-4503-ibm-langflow-desktop/
#OSINT #ThreatIntel #CyberSecurity #cve-2026-4503 #ibm #langflow-desktop
-
CVE Alert: CVE-2026-4503 - IBM - Langflow Desktop - https://www.redpacketsecurity.com/cve-alert-cve-2026-4503-ibm-langflow-desktop/
#OSINT #ThreatIntel #CyberSecurity #cve-2026-4503 #ibm #langflow-desktop
-
CVE Alert: CVE-2026-6596 - langflow-ai - langflow - https://www.redpacketsecurity.com/cve-alert-cve-2026-6596-langflow-ai-langflow/
#OSINT #ThreatIntel #CyberSecurity #cve-2026-6596 #langflow-ai #langflow
-
CVE Alert: CVE-2026-6596 - langflow-ai - langflow - https://www.redpacketsecurity.com/cve-alert-cve-2026-6596-langflow-ai-langflow/
#OSINT #ThreatIntel #CyberSecurity #cve-2026-6596 #langflow-ai #langflow
-
🛡️ CVE-2026-6597 (CVSS 5.1, MEDIUM): langflow-ai langflow v1.8.0 – 1.8.3 stores credentials without protection in Flow Using API. Public exploit available. Restrict access & rotate credentials until patched. https://radar.offseq.com/threat/cve-2026-6597-unprotected-storage-of-credentials-i-fc1cbce7 #OffSeq #Vulnerability #Langflow
-
CVE Alert: CVE-2026-3357 - IBM - Langflow Desktop - https://www.redpacketsecurity.com/cve-alert-cve-2026-3357-ibm-langflow-desktop/
#OSINT #ThreatIntel #CyberSecurity #cve-2026-3357 #ibm #langflow-desktop
-
CVE Alert: CVE-2026-3357 - IBM - Langflow Desktop - https://www.redpacketsecurity.com/cve-alert-cve-2026-3357-ibm-langflow-desktop/
#OSINT #ThreatIntel #CyberSecurity #cve-2026-3357 #ibm #langflow-desktop
-
CVE Alert: CVE-2026-33017 - langflow-ai - langflow - https://www.redpacketsecurity.com/cve-alert-cve-2026-33017-langflow-ai-langflow/
#OSINT #ThreatIntel #CyberSecurity #cve-2026-33017 #langflow-ai #langflow
-
CVE Alert: CVE-2026-33017 - langflow-ai - langflow - https://www.redpacketsecurity.com/cve-alert-cve-2026-33017-langflow-ai-langflow/
#OSINT #ThreatIntel #CyberSecurity #cve-2026-33017 #langflow-ai #langflow
-
CVE Alert: CVE-2026-33053 - langflow-ai - langflow - https://www.redpacketsecurity.com/cve-alert-cve-2026-33053-langflow-ai-langflow/
#OSINT #ThreatIntel #CyberSecurity #cve-2026-33053 #langflow-ai #langflow
-
CVE Alert: CVE-2026-33053 - langflow-ai - langflow - https://www.redpacketsecurity.com/cve-alert-cve-2026-33053-langflow-ai-langflow/
#OSINT #ThreatIntel #CyberSecurity #cve-2026-33053 #langflow-ai #langflow
-
⚠️ CRITICAL: Langflow RCE flaw is being actively exploited! Unauthenticated attackers can execute code via public flows. No patch or version info yet. Disable public flows, restrict access, monitor logs. Immediate action required! https://radar.offseq.com/threat/critical-langflow-vulnerability-exploited-hours-af-bdeb0c89 #OffSeq #Langflow #RCE #Infosec
-
🚨 CVE-2026-27966 (CRITICAL): langflow-ai langflow (<1.8.0) allows unauthenticated RCE via prompt injection due to hardcoded allow_dangerous_code=True. Patch to 1.8.0+ now! https://radar.offseq.com/threat/cve-2026-27966-cwe-94-improper-control-of-generati-8ac7c0b0 #OffSeq #Vulnerability #Langflow #RCE
-
От чат-бота к AI агенту: собираем локальную систему на LibreChat, Langflow и MCP
Всем привет! Меня зовут Николай Луняка. В прошлой статье мы строили локальную систему для транскрибации аудио, а сегодня пойдём дальше и соберём локальную агентную AI-систему — без облаков и с контролем над данными. В этой статье я покажу, как собрать связку из трёх ключевых компонентов: 1. LibreChat — UI для работы с LLM 2. Langflow — low-code платформа и визуальный редактор 3. MCP — стандарт для подключения инструментов Статья построена по принципу «по нарастающей», где каждый новый уровень — это рабочий инструмент. Можно остановиться на любом этапе, а можно пройти все и тогда получите связку UI + инструменты + централизованная логика (и дальше ее можно развивать под свои сценарии).
https://habr.com/ru/companies/alfa/articles/1000342/
#langflow #librechat #mcp #llm #agent #ollama #local_ai #fastapi #агенты_ии #gpt
-
🚨 This week’s CrowdSec Threat Alert highlights CVE-2025-34291, a critical LangFlow RCE actively exploited in the wild.
👀 Security teams: patch your LangFlow instances and harden configurations to prevent account takeovers and full AI workflow compromise.
Explore the attack details, threat patterns, and mitigation steps in the latest article: https://www.crowdsec.net/vulntracking-report/cve-2025-34291
#CVE #CVE202534291 #RCE #LangFlow #ThreatAlert #cybersecurity
-
🚨 This week’s CrowdSec Threat Alert highlights CVE-2025-34291, a critical LangFlow RCE actively exploited in the wild.
👀 Security teams: patch your LangFlow instances and harden configurations to prevent account takeovers and full AI workflow compromise.
Explore the attack details, threat patterns, and mitigation steps in the latest article: https://www.crowdsec.net/vulntracking-report/cve-2025-34291
#CVE #CVE202534291 #RCE #LangFlow #ThreatAlert #cybersecurity
-
От LangChain к LangGraph: детально разбираемся с фреймворками и всей Lang-экосистемой
LangChain или LangGraph? Какой фреймворк для ии-агентов выбрать? А может быть LangSmith? Или LangFuse? LangFlow? Если вы сходу не отличаете все эти Lang-что-то там между собой или просто хочется побольше узнать о внутренностях LangChain и LangGraph, то добро пожаловать в эту статью, которую мне хотелось сделать фундаментальной, чтобы ответить сразу на все возникающие вокруг LangChain вопросы. Поговорим про архитектурные различия между LangChain и LangGraph, их подходы, посмотрим как это выглядит в коде, поищем лучшие точки применения и взглянем на сформированную экосистему вокруг.
https://habr.com/ru/articles/956940/
#langchain #langgraph #langfuse #langsmith #langflow #ленгчейн #фреймворки #llm #большие_языковые_модели #ииагенты
-
I published a walk-through video about building an AI Agent using #ApacheCamel, #LangFlow and the Wanaku #MCP Router