CVSS 10.0 RufRoot Flaw Allowed Attackers to Hijack Ruflo Without Logging In
A vulnerable Ruflo deployment could be reached without authentication, and a single network request was enough to execute commands inside the MCP bridge container, according…