CISA orders urgent patch for Langflow critical RCE
π The Cybersecurity and Infrastructure Security Agency (CISA) has ordered U.S. federal agencies to prioritize patching a critical remote code execution vulnerability in the Langflow visual AI agent framework, tracked as CVE-2026-0770. Researchers at Trend Micro reported that the flaw is in the handling of the exec_globals parameter at the validation endpoint and allows unauthenticated attackers to execute code as root. KEVIntel observed in-the-wild exploitation starting June 27 with over 220 attempts; malicious actors tried to deploy malware and access cloud credentials. Agencies must remediate by Friday under BOD 26-04, and organizations are advised to review requests to /api/v1/validate/code, restrict validation access, and rotate exposed credentials.
