Critical Vulnerability CVE-2026-59726 Exposes 233 AI Tools
A critical vulnerability in Ruflo called CVE-2026-59726 (RufRoot) exposes 233 MCP tools without authentication, enabling remote code execution, LLM API key theft, and persistent memory poisoning. The flaw survives patching attempts, posing sustained security risks.