Cybersecurity & Privacy — 2026-03-22

Critical Langflow AI Pipeline Flaw Exploited Within 20 Hours of Disclosure; Supply Chain Compromise Observed

CVE-2026-33017 (CVSS 9.3) in Langflow, an open-source AI pipeline orchestration tool, was weaponized within 20 hours of advisory publication—with no public proof-of-concept available. Attackers exploited an unauthenticated endpoint that passes user-supplied Python code to exec() with zero sandboxing. Sysdig documented a three-phase attack: mass scanning from four IPs, active reconnaissance with pre-staged infrastructure, and data exfiltration targeting keys and credentials that provided access to connected databases. The speed of exploitation underscores the risk to organizations deploying open-source AI tooling without hardened configurations.

Analysis
Relevant to the Anthropic-Pentagon dispute tracked across multiple prior INTSUMs: AI tooling deployed without security hardening creates supply chain risk—the exact argument the Pentagon used against Claude, but here applying to open-source AI infrastructure broadly.

View in full brief →

UNCLASSIFIED // OPEN SOURCE