<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #Langflow</title><description>Cybersecurity articles tagged #Langflow on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>ENCFORGE Ransomware Targets AI Systems via Langflow RCE</title><link>https://runtimerebel.com/blog/encforge-ransomware-targets-ai-systems-via-langflow-rce</link><guid isPermaLink="true">https://runtimerebel.com/blog/encforge-ransomware-targets-ai-systems-via-langflow-rce</guid><description>New ENCFORGE ransomware, attributed to JADEPUFFER, leverages a Langflow RCE vulnerability to encrypt AI model files, weights, and training data.</description><pubDate>Tue, 21 Jul 2026 10:39:45 GMT</pubDate><category>ENCFORGE</category><category>Ransomware</category><category>JADEPUFFER</category><category>Langflow</category><category>RCE</category><category>AI</category><category>Sysdig</category><category>Golang</category></item><item><title>CVE-2024-37014: CISA Orders Federal Agencies to Patch Langflow</title><link>https://runtimerebel.com/blog/cve-2024-37014-cisa-orders-federal-agencies-to-patch-langflow</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2024-37014-cisa-orders-federal-agencies-to-patch-langflow</guid><description>CISA added CVE-2024-37014, a critical authentication bypass in the Langflow AI framework, to its KEV catalog following reports of active exploitation.</description><pubDate>Wed, 08 Jul 2026 10:23:08 GMT</pubDate><category>CVE-2024-37014</category><category>Langflow</category><category>CISA KEV</category><category>AI Security</category></item><item><title>JadePuffer: First LLM-Driven Ransomware Leverages Langflow Flaw</title><link>https://runtimerebel.com/blog/jadepuffer-first-llm-driven-ransomware-leverages-langflow-flaw</link><guid isPermaLink="true">https://runtimerebel.com/blog/jadepuffer-first-llm-driven-ransomware-leverages-langflow-flaw</guid><description>Analysis of JadePuffer, the first reported LLM-driven ransomware, which exploited a Langflow vulnerability to exfiltrate database data and encrypt systems.</description><pubDate>Mon, 06 Jul 2026 21:41:23 GMT</pubDate><category>JADEPUFFER</category><category>Ransomware</category><category>LLM Driven Attack</category><category>Langflow</category><category>AI Security</category><category>Agentic AI</category></item><item><title>Agentic AI Automates Ransomware Attacks via Langflow Exploitation</title><link>https://runtimerebel.com/blog/agentic-ai-automates-ransomware-attacks-via-langflow-exploitation</link><guid isPermaLink="true">https://runtimerebel.com/blog/agentic-ai-automates-ransomware-attacks-via-langflow-exploitation</guid><description>Agentic AI agents demonstrate automated multi-stage ransomware attacks using Langflow, raising concerns for AI development security and future threat automation.</description><pubDate>Fri, 03 Jul 2026 14:09:45 GMT</pubDate><category>Agentic AI</category><category>Ransomware</category><category>Langflow</category><category>AI Security</category><category>Automated Exploitation</category><category>LLM Agents</category></item><item><title>JADEPUFFER AI Agent Exploits Langflow RCE for Automated Ransomware</title><link>https://runtimerebel.com/blog/jadepuffer-ai-agent-exploits-langflow-rce-for-automated-ransomware</link><guid isPermaLink="true">https://runtimerebel.com/blog/jadepuffer-ai-agent-exploits-langflow-rce-for-automated-ransomware</guid><description>The threat actor JADEPUFFER has pioneered the use of AI agents to automate end-to-end ransomware attacks via Langflow RCE, from initial access to data wiping.</description><pubDate>Thu, 02 Jul 2026 10:44:26 GMT</pubDate><category>JADEPUFFER</category><category>Langflow</category><category>CVE-2024-28186</category><category>AI Ransomware</category><category>Automated Attacks</category></item><item><title>CVE-2024-5027: Langflow Path Traversal Exploited in Attacks</title><link>https://runtimerebel.com/blog/cve-2024-5027-langflow-path-traversal-exploited-in-attacks</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2024-5027-langflow-path-traversal-exploited-in-attacks</guid><description>Security researchers observe active exploitation of CVE-2024-5027, a high-severity path traversal flaw in the Langflow AI platform allowing arbitrary file writes.</description><pubDate>Thu, 11 Jun 2026 05:41:21 GMT</pubDate><category>CVE-2024-5027</category><category>Langflow</category><category>AI Security</category><category>Path Traversal</category><category>RCE</category></item><item><title>CVE-2025-34291 &amp; CVE-2023-41179: CISA Warns of Active Exploitation</title><link>https://runtimerebel.com/blog/cve-2025-34291-cve-2023-41179-cisa-warns-of-active-exploitation</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2025-34291-cve-2023-41179-cisa-warns-of-active-exploitation</guid><description>CISA adds Langflow and Trend Micro Apex One vulnerabilities to KEV. Learn how to mitigate CVE-2025-34291 and CVE-2023-41179 to prevent active exploitation.</description><pubDate>Fri, 22 May 2026 09:15:18 GMT</pubDate><category>CVE-2025-34291</category><category>CVE-2023-41179</category><category>Langflow</category><category>Trend Micro</category><category>CISA KEV</category><category>RCE</category></item><item><title>Langflow AI Platform: Critical Code Injection Under Active Attack</title><link>https://runtimerebel.com/blog/langflow-ai-platform-critical-code-injection-under-active-attack</link><guid isPermaLink="true">https://runtimerebel.com/blog/langflow-ai-platform-critical-code-injection-under-active-attack</guid><description>Threat actors are actively exploiting a critical code injection vulnerability in the Langflow AI platform, demanding immediate patching to prevent compromise.</description><pubDate>Thu, 26 Mar 2026 20:15:10 GMT</pubDate><category>Langflow</category><category>AI</category><category>Code Injection</category><category>Active Exploitation</category><category>Critical Vulnerability</category></item><item><title>Langflow CVE-2026-33017: AI Workflow Hijacking Under Active Exploitation</title><link>https://runtimerebel.com/blog/langflow-cve-2026-33017-ai-workflow-hijacking-under-active-exploitation</link><guid isPermaLink="true">https://runtimerebel.com/blog/langflow-cve-2026-33017-ai-workflow-hijacking-under-active-exploitation</guid><description>CISA warns of active exploitation of CVE-2026-33017 in Langflow, enabling attackers to hijack AI workflows and potentially compromise AI agents.</description><pubDate>Thu, 26 Mar 2026 20:14:50 GMT</pubDate><category>Langflow</category><category>CVE-2026-33017</category><category>AI Security</category><category>Workflow Hijacking</category><category>Active Exploitation</category><category>CISA</category></item><item><title>CVE-2026-33017: Langflow Code Injection - Patch Immediately</title><link>https://runtimerebel.com/blog/cve-2026-33017-langflow-code-injection-patch-immediately</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-33017-langflow-code-injection-patch-immediately</guid><description>CISA adds actively exploited Langflow Code Injection Vulnerability (CVE-2026-33017) to KEV catalog. Critical patch urged for all organizations.</description><pubDate>Wed, 25 Mar 2026 20:18:12 GMT</pubDate><category>CVE-2026-33017</category><category>Langflow</category><category>Code Injection</category><category>CISA KEV</category><category>Active Exploitation</category></item><item><title>CVE-2026-33017: Critical Langflow RCE Exploited within 20 Hours</title><link>https://runtimerebel.com/blog/cve-2026-33017-critical-langflow-rce-exploited-within-20-hours</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-33017-critical-langflow-rce-exploited-within-20-hours</guid><description>CVE-2026-33017 is a critical RCE vulnerability in Langflow currently under active exploitation. Learn how to secure your AI orchestration and detect attacks.</description><pubDate>Fri, 20 Mar 2026 16:18:45 GMT</pubDate><category>CVE-2026-33017</category><category>Langflow</category><category>RCE</category><category>AI Security</category><category>Active Exploitation</category></item></channel></rss>