CVE Tools

CISA Warns of Exploited Langflow, N-central, and Tomcat Vulnerabilities

SecurityWeekBy Ionut Arghire

Reported exploitedLangflowN-central

Our summary

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning that cybercriminals are actively exploiting three critical vulnerabilities impacting IBM Langflow OSS, N-able N-central, and Apache Tomcat. These flaws—CVE-2026-9198, CVE-2026-18556, and CVE-2026-34486—are being used to achieve remote code execution and unauthorized administrative access, with some already tied to real-world attacks. CISA urges organizations to apply available patches immediately ahead of its August 7 deadline.

Read at SecurityWeek

SecurityWeek publishes this story on its own site; we link to it rather than reprint it.

Worried this affects your company?

Discuss a security assessment of your internet-facing systems. Scope agreed before testing.

Check my exposure

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store