“Reachability Watch” for September 11 – 17, 2026: 8 CVEs against Langflow in one week, and why “publicly shared” = “publicly ownable” 0 ▲ Global Nerdy 1 hour ago · Tech · hide · 0 comments I’m a few days late on this one, but the content holds up: last week’s Reachability Watch, written by our Chief Strategy and Marketing Officer Mark Jaffe, covering September 11–17, is here: https://netfoundry.io/ai/reachability-watch-cve-kev-tracker-2026-09-18/ (On the bright side, I had time to draw a “back of the envelope” comic that covers the big CVE!) The CVE numbers Here are the numbers: 1,248 new network-exploitable CVEs 117 of these CVEs are rated at 8.6 or higher 12 of these CVEs are a perfect 10.0: 9 of those twelve in vm2 alone Worth reading 1. The Langflow flaw CVE-2026-85025 (9.8) is unauthenticated RCE in IBM Langflow OSS 1.0.0–1.11.5. It’s reachable through publicly shared MCP project endpoints, with read and write access to chat sessions on top. Whatever context, credentials, or proprietary data flowed through those sessions comes along with it. The mechanism is the interesting part. Langflow lets you share a flow via an MCP project endpoint so other tools and agents… No comments yet. Log in to reply on the Fediverse. Comments will appear here.