Identifier timeline

CVE-2025-34291

2 public sessions

Sessions

  • 2026-05-22

    MuddyWater (G0069) attribution for Langflow CVE-2025-34291 exploitation is moderate confidence only, based on TTP patt

  • 2026-05-22

    ngflow CISA KEV entry creates a compliance impossibility**: CVE-2025-34291 exploits a CORS misconfiguration (`allow_origins='*'` with

Loading stance timeline

Decision Records

No public Decision Records are related to this entity yet.

Unified Search

Search the public record.

CVE-2025-34291 — Cyber Roundtable Entity Index