Hackers exploit recently patched flaws in PaperCut, Langflow and JFrog

 

Hackers exploit recently patched flaws in PaperCut, Langflow and JFrog

Hackers are exploiting several recently patched security flaws in PaperCut, Langflow and JFrog software to steal sensitive data and access systems.

Two critical vulnerabilities in PaperCut NG and MF, tracked as CVE-2026-81578 and CVE-2026-82078, were patched last month after being exploited as zero-days. The flaws can be used in tandem to bypass authentication and remotely run code on vulnerable print management servers.

Security researchers say attackers are now using the flaws to steal data from PaperCut servers, including database tables.

Threat actors are also exploiting a critical Langflow vulnerability (CVE-2026-0768). Researchers detected more than 50 attacks against honeypots over the weekend. The attackers were looking for credentials, AWS secrets and OpenAI API keys stored on vulnerable systems.

A separate campaign is targeting JFrog Artifactory via a critical authentication bypass flaw (CVE-2026-82329). JFrog released a fix in version 7.161.20 on August 28. Researchers say attackers began exploiting the flaw by September 1 to create administrator tokens and gather information about users, groups and credentials.

Back to the list