Identifier timeline
CVE-2025-34291
Sessions
- 2026-05-22
MuddyWater (G0069) attribution for Langflow CVE-2025-34291 exploitation is moderate confidence only, based on TTP patt
- 2026-05-22
ngflow CISA KEV entry creates a compliance impossibility**: CVE-2025-34291 exploits a CORS misconfiguration (`allow_origins='*'` with
Loading stance timeline
Decision Records
No public Decision Records are related to this entity yet.