Ruflo Patches CVSS 10.0 Vulnerability That Gave Attackers Unauthenticated Access to AI Agent Infrastructure Through MCP Bridge
Noma Security disclosed CVE-2026-59726, a CVSS 10.0 flaw in the open-source AI agent platform Ruflo that allowed unauthenticated attackers to execute arbitrary code, steal LLM API keys, hijack agent swarms, and poison persistent AI memory through one HTTP POST to the platform's Model Context Protocol bridge. Ruflo patched within hours. The vulnerability is the first critical exploit targeting the MCP bridge layer specifically, marking a shift in agent security threats from model-layer jailbreaks to infrastructure-layer attacks.