Security, AI, and other curiosities
Langflow 5th ITW RCE (CVE-2026-9198) via chained auto_login + exec() endpoints; Apache Tomcat EncryptInterceptor regression enables unauthenticated deserialization RCE on port 4000.