Langflow CVE-2026-9198: Active Exploitation RCE via Auto-Login Superuser Token and Code Validator exec() Chain

1. Basic Information

Article Title: CISA warns of hackers exploiting Langflow, N-central, Apache Tomcat flaws

Publisher: BleepingComputer

Publication Date: August 5, 2026