Bottom line: CISA has added three actively exploited vulnerabilities in Langflow (CVSS 9.8), Apache Tomcat and N-central to its KEV catalog, triggering mandatory patching deadlines for US federal agencies and serving as a prioritization signal for other organizations as well.
On August 5, 2026, the US cybersecurity agency CISA added three security vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, as active exploitation in the wild has been confirmed for all three. Affected products include the AI workflow platform Langflow, Apache Tomcat, and the remote management software N-central.
At the center of the announcement is CVE-2026-9198, a code injection vulnerability in Langflow with a CVSS score of 9.8. The flaw allows unauthenticated attackers to achieve full remote code execution on affected systems. In addition to Langflow, CISA lists two further vulnerabilities in Apache Tomcat and in N-central, a remote monitoring and management solution widely used particularly by managed service providers.
For CISOs, inclusion in the KEV catalog is a binding signal: under Binding Operational Directive 22-01, US federal agencies are required to patch listed vulnerabilities within specified deadlines. For organizations outside the US government sector as well, the KEV catalog is considered a reliable indicator of which vulnerabilities are actually being exploited in attacks and should therefore be prioritized — independent of the raw CVSS score. The high severity of CVE-2026-9198, combined with the lack of an authentication requirement, increases the risk for organizations using Langflow to orchestrate AI workflows, particularly if the application is operated without network segmentation or with direct internet access.
Security leaders should promptly check whether Langflow, Apache Tomcat, or N-central are in use within their own infrastructure or at service providers, and identify affected systems. Since N-central is frequently used by managed service providers for remote maintenance of customer environments, a compromise of this solution can impact multiple downstream organizations. Until patches are applied, it is recommended to restrict network access to the affected services and to review logs for indications of prior exploitation.
Source: thehackernews.com · Published August 5, 2026
Lumi AI News — AI-assisted curation pursuant to Art. 50 EU AI Act. Paraphrasing and classification by Lumi News Pipeline v1.8.3.