Cybersecurity & Privacy — 2026-03-22
Critical Langflow AI Pipeline Flaw Exploited Within 20 Hours of Disclosure; Supply Chain Compromise Observed
CVE-2026-33017 (CVSS 9.3) in Langflow, an open-source AI pipeline orchestration tool, was weaponized within 20 hours of advisory publication—with no public proof-of-concept available. Attackers exploited an unauthenticated endpoint that passes user-supplied Python code to exec() with zero sandboxing. Sysdig documented a three-phase attack: mass scanning from four IPs, active reconnaissance with pre-staged infrastructure, and data exfiltration targeting keys and credentials that provided access to connected databases. The speed of exploitation underscores the risk to organizations deploying open-source AI tooling without hardened configurations.
Analysis
Relevant to the Anthropic-Pentagon dispute tracked across multiple prior INTSUMs: AI tooling deployed without security hardening createssupply chain risk —the exact argument the Pentagon used against Claude, but here applying to open-source AI infrastructure broadly.
Relevant to the Anthropic-Pentagon dispute tracked across multiple prior INTSUMs: AI tooling deployed without security hardening creates