thehackernews.com web signal

Ruflo Discloses Critical CVE-2026-59726 (CVSS 10.0), Unauthenticated MCP Bridge Exposed 233 Tools

Summary

Noma Labs disclosed CVE-2026-59726 ('RufRoot'), a maximum-severity flaw in the open-source AI agent platform Ruflo (67K+ GitHub stars, #2 on MCPMarket) that let a single unauthenticated HTTP POST to the MCP bridge on port 3001 execute code and exfiltrate LLM API keys. Ruflo's maintainer Reuven Cohen shipped version 3.16.3 within 24 hours of the June 30 disclosure, binding the bridge to loopback, gating terminal_execute behind access controls, and turning on MongoDB auth. All 233 tools were exposed on default Docker Compose deployments.