Ethical Hacking News
U.S. CISA adds three new vulnerabilities to its Known Exploited Vulnerabilities catalog, including IBM Langflow Code Injection Vulnerability, N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability, and Apache Tomcat Missing Encryption of Sensitive Data Vulnerability. These vulnerabilities pose a significant risk to federal agencies and private organizations that rely on these systems.
The US Cybersecurity and Infrastructure Security Agency (CISA) has added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog. The newly added vulnerabilities are IBM Langflow Code Injection Vulnerability, N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability, and Apache Tomcat Missing Encryption of Sensitive Data Vulnerability. These vulnerabilities pose a significant risk to federal agencies and private organizations that rely on these systems. The IBM Langflow Code Injection Vulnerability allows unauthenticated attackers to gain superuser access and execute arbitrary code. The N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability allows attackers to access affected systems without valid credentials. The Apache Tomcat Missing Encryption of Sensitive Data Vulnerability can bypass the EncryptInterceptor, exposing sensitive data. The exploitation of these vulnerabilities has been linked to a Chinese-speaking threat actor using AI-powered autonomous hacking agents. Federal agencies and private organizations are urged to address these vulnerabilities immediately to protect their networks against attacks.
The United States Cybersecurity and Infrastructure Security Agency (CISA) has recently added three new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog, a list that tracks high-priority threats to federal agencies. The newly added vulnerabilities are IBM Langflow Code Injection Vulnerability (CVE-2026-9198), N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability (CVE-2026-18556), and Apache Tomcat Missing Encryption of Sensitive Data Vulnerability (CVE-2026-34486). These vulnerabilities pose a significant risk to federal agencies, as well as private organizations that rely on these systems.
The IBM Langflow Code Injection Vulnerability, tracked as CVE-2026-9198, is a critical issue that allows unauthenticated attackers to gain superuser access and execute arbitrary code. This vulnerability affects IBM Langflow OSS versions 1.0.0–1.10.0 and could lead to full remote code execution on default deployments. The impact of this vulnerability could be significant, as it would allow attackers to compromise the entire system without being detected.
The N-able N-central Authentication Bypass Using an Alternate Path or Channel Vulnerability, tracked as CVE-2026-18556, is an authentication bypass flaw that allows attackers to access affected systems without valid credentials. This vulnerability affects N-able N-central versions through 2026.1 and could be exploited by attackers to gain unauthorized access to the system.
The Apache Tomcat Missing Encryption of Sensitive Data Vulnerability, tracked as CVE-2026-34486, is a flaw that can bypass the EncryptInterceptor, exposing sensitive data. This vulnerability affects Apache Tomcat versions 11.0.20, 10.1.53, and 9.0.116 and could be exploited by attackers to steal sensitive information.
The exploitation of these vulnerabilities has been linked to a Chinese-speaking threat actor that used an AI-powered autonomous hacking agent based on DeepSeek to identify and exploit internet-facing vulnerabilities. The attackers also carried out manual exploitation of vulnerabilities in Citrix NetScaler, Apache Tomcat, Marimo, and IKE VPN systems.
Researchers have warned that federal agencies and private organizations must address these vulnerabilities immediately to protect their networks against attacks exploiting the flaws in the catalog. CISA has ordered federal agencies to fix the flaws by August 7, 2026, while experts recommend that private organizations review the Catalog and address the vulnerabilities in their infrastructure.
The addition of these new vulnerabilities to the KEV catalog highlights the growing list of high-priority threats that federal agencies and private organizations must be aware of. As the threat landscape continues to evolve, it is essential for organizations to stay vigilant and take proactive measures to protect themselves against emerging threats.
Related Information:
https://www.ethicalhackingnews.com/articles/US-CISA-Adds-Langflow-Apache-Tomcat-and-N-able-N-central-Flaws-to-its-Known-Exploited-Vulnerabilities-Catalog-A-Growing-List-of-High-Priority-Threats-ehn.shtml
https://securityaffairs.com/196667/hacking/u-s-cisa-adds-langflow-apache-tomcat-and-n-able-n-central-flaws-to-its-known-exploited-vulnerabilities-catalog.html
https://nvd.nist.gov/vuln/detail/CVE-2026-9198
https://www.cvedetails.com/cve/CVE-2026-9198/
https://nvd.nist.gov/vuln/detail/CVE-2026-18556
https://www.cvedetails.com/cve/CVE-2026-18556/
https://nvd.nist.gov/vuln/detail/CVE-2026-34486
https://www.cvedetails.com/cve/CVE-2026-34486/
Published: Wed Aug 5 12:34:22 2026 by llama3.2 3B Q4_K_M