Skip to content
English

Products › Server applications and development

Server applications and development

AI and automation

AI, large language model and workflow automation platforms, recent arrivals in the catalog.

For example: Langflow, LiteLLM, MLflow, n8n.

Category RSS feed

Pace of additions

Number of “AI and automation” vulnerabilities added to CISA’s KEV catalog, per 30-day period (the last one, still in progress, ends on September 28, 2026). Source: CISA KEV catalog.
Catalog additions per 30-day period
PeriodVulnerabilities added
Sep 4, 2025 to Oct 3, 20250
Oct 4, 2025 to Nov 2, 20250
Nov 3, 2025 to Dec 2, 20250
Dec 3, 2025 to Jan 1, 20260
Jan 2, 2026 to Jan 31, 20260
Feb 1, 2026 to Mar 2, 20260
Mar 3, 2026 to Apr 1, 20262
Apr 2, 2026 to May 1, 20261
May 2, 2026 to May 31, 20262
Jun 1, 2026 to Jun 30, 20261
Jul 1, 2026 to Jul 30, 20262
Jul 31, 2026 to Aug 29, 20263
Aug 30, 2026 to Sep 28, 2026 (in progress)2

Affected brands

In alphabetical order, with their number of vulnerabilities in this category.

  • Apache 2 vulnerabilities
  • BerriAI 3 vulnerabilities · 3 in the last 12 months
  • Kestra 1 vulnerability · 1 in the last 12 months
  • Langflow 6 vulnerabilities · 5 in the last 12 months
  • Marimo 1 vulnerability · 1 in the last 12 months
  • MLflow 1 vulnerability · 1 in the last 12 months
  • n8n 1 vulnerability · 1 in the last 12 months
  • Ray 1 vulnerability · 1 in the last 12 months

A high count also reflects how widely a product is deployed and how much attackers care about it: it is not a security rating.

See also

Patch first

In the order of the main list (Patch first): recent additions first, then the most severe. The number is the rank within this category.

  1. Rank 1Kestra OSS

    CVE-2026-49869

    Recently addedHunt for compromise (CISA)

    Kestra OSS OS Command Injection Vulnerability

    Added to the catalog less than 30 days ago: ranked by date added.

    Added
    Sep 2, 2026
    CISA deadline
    3 days
    CVSS severity
    10.0 (critical)
  2. Rank 2BerriAI LiteLLM

    CVE-2026-59822

    Recently added

    BerriAI LiteLLM Improper Authentication Vulnerability

    Added to the catalog less than 30 days ago: ranked by date added.

    Added
    Sep 2, 2026
    CISA deadline
    14 days
    CVSS severity
    8.2 (high)
  3. Rank 3Langflow

    CVE-2026-9198

    Hunt for compromise (CISA)

    IBM Langflow Code Injection Vulnerability

    Added in the last 12 months: ranked by severity.

    Added
    Aug 4, 2026
    CISA deadline
    3 days
    CVSS severity
    9.8 (critical)
  4. Rank 4Langflow

    CVE-2026-0770

    Hunt for compromise (CISA)

    Langflow Inclusion of Functionality from Untrusted Control Sphere Vulnerability

    Added in the last 12 months: ranked by severity.

    Added
    Jul 21, 2026
    CISA deadline
    3 days
    CVSS severity
    9.8 (critical)
  5. Rank 5BerriAI LiteLLM

    CVE-2026-42208

    BerriAI LiteLLM SQL Injection Vulnerability

    Added in the last 12 months: ranked by severity.

    Added
    May 8, 2026
    CISA deadline
    3 days
    CVSS severity
    9.8 (critical)
  6. Rank 6Marimo

    CVE-2026-39987

    Marimo Remote Code Execution Vulnerability

    Added in the last 12 months: ranked by severity.

    Added
    Apr 23, 2026
    CISA deadline
    14 days
    CVSS severity
    9.8 (critical)
  7. Rank 7Langflow

    CVE-2026-33017

    Langflow Code Injection Vulnerability

    Added in the last 12 months: ranked by severity.

    Added
    Mar 25, 2026
    CISA deadline
    14 days
    CVSS severity
    9.8 (critical)
  8. Rank 8MLflow

    CVE-2026-64849

    MLflow Server-Side Request Forgery Vulnerability

    Added in the last 12 months: ranked by severity.

    Added
    Aug 19, 2026
    CISA deadline
    14 days
    CVSS severity
    9.3 (critical)
  9. Rank 9Ray

    CVE-2025-62593

    Hunt for compromise (CISA)

    Ray-Project Ray Code Injection Vulnerability

    Added in the last 12 months: ranked by severity.

    Added
    Aug 17, 2026
    CISA deadline
    3 days
    CVSS severity
    8.8 (high)
  10. Rank 10BerriAI LiteLLM

    CVE-2026-42271

    BerriAI LiteLLM Command Injection Vulnerability

    Added in the last 12 months: ranked by severity.

    Added
    Jun 8, 2026
    CISA deadline
    14 days
    CVSS severity
    8.8 (high)
Show 6 more vulnerabilities
  1. Rank 11Langflow

    CVE-2025-34291

    Langflow Origin Validation Error Vulnerability

    Added in the last 12 months: ranked by severity.

    Added
    May 21, 2026
    CISA deadline
    14 days
    CVSS severity
    8.8 (high)
  2. Rank 12n8n

    CVE-2025-68613

    n8n Improper Control of Dynamically-Managed Code Resources Vulnerability

    Added in the last 12 months: ranked by severity.

    Added
    Mar 11, 2026
    CISA deadline
    14 days
    CVSS severity
    8.8 (high)
  3. Rank 13Langflow

    CVE-2026-55255

    Hunt for compromise (CISA)

    Langflow Authorization Bypass Through User-Controlled Key Vulnerability

    Added in the last 12 months: ranked by severity.

    Added
    Jul 7, 2026
    CISA deadline
    3 days
    CVSS severity
    8.4 (high)
  4. Rank 14Langflow

    CVE-2025-3248

    Ransomware

    Langflow Missing Authentication Vulnerability

    Added more than a year ago: ranked by severity.

    Added
    May 5, 2025
    CISA deadline
    21 days
    CVSS severity
    9.8 (critical)
  5. Rank 15Apache Airflow

    CVE-2020-13927

    CVE from 2020, added in 2022

    Apache Airflow's Experimental API Authentication Bypass

    Added more than a year ago: ranked by severity.

    Added
    Jan 18, 2022
    CISA deadline
    181 days
    CVSS severity
    9.8 (critical)
  6. Rank 16Apache Airflow

    CVE-2020-11978

    CVE from 2020, added in 2022

    Apache Airflow Command Injection

    Added more than a year ago: ranked by severity.

    Added
    Jan 18, 2022
    CISA deadline
    181 days
    CVSS severity
    8.8 (high)

Follow and verify

Get new vulnerabilities in this category: RSS feed (add it to Outlook, Teams, Slack or your feed reader).

Indicative classification, based on the vendor and product names given by CISA. How products are classified.