Mallory correlates every CVE against your assets, your vendors, and active adversary campaigns. Know which vulnerabilities matter for you, not just which ones are loud.
1 valid exploit after Mallory filtered fakes, detection scripts, and README-only repos (1 hidden).
This two-file repository contains a README and a standalone Python proof of concept, poc.py, for CVE-2026-93680 affecting stated Langflow versions 1.5.0 through 1.11.4 (tested on Ubuntu 22.04). The script uses argparse and Python requests. Without -s, it performs a streaming GET to the target's MCP SSE endpoint and prints each received event. With -s, it POSTs MCP JSON-RPC initialize and notifications/initialized messages, followed by tools/list, to the MCP endpoint using the supplied session ID. The apparent vulnerability is an authentication/authorization bypass involving reuse or abuse of an MCP session ID obtained from an unauthenticated SSE connection. The code has no command-execution, file-read, tool-call, or explicit data-exfiltration routine; its demonstrated capability is MCP session initialization and tool discovery, with raw responses printed to stdout. It is therefore a network-accessible PoC rather than a weaponized RCE exploit.
1 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
Query your assets running an affected version, and investigate the blast radius.
Every observed campaign linking this CVE to a named adversary.
Malware families riding this exploit, with evidence and IOCs.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Cross-references every affected SKU, including bundled OEM variants.
Community discussion across Reddit, Mastodon, and other social sources.