CISA Warns Federal Agencies About Active Exploitation of Critical Vulnerabilities
The US Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning to federal agencies about hackers exploiting three critical vulnerabilities in IBM's Langflow, N-able's N-central, and Apache Tomcat.
CISA has given federal agencies just three days to mitigate these vulnerabilities, which have been actively exploited by attackers.
The most severe vulnerability is found in IBM's Langflow visual framework for building AI agents, with a critical rating of 9.8 out of 10. This allows an unauthenticated attacker to remotely execute code on default Langflow deployments by chaining two API endpoints to bypass login and run code.
Multiple proof-of-concept (PoC) exploits for this vulnerability emerged in the public space, with complete instructions on how they can be leveraged. CISA has also issued an alert for another critical Langflow vulnerability being exploited in attacks to gain remote code execution with root privileges.