Cybersecurity

Ruflo MCP Flaw Lets Unauthenticated Attackers Run Commands and Poison AI Memory

22756492
Ruflo CVE-2026-59726 exposes an unauthenticated MCP bridge that could enable RCE, LLM key theft, conversation access, and AI memory poisoning.