Source · DiggingBeagle record

Unauthenticated RCE in ruflo MCP bridge default docker-compose deployment

Ruflo GitHub security advisory describing unauthenticated MCP tool invocation, terminal execution, exposed provider keys, AgentDB poisoning and the patched version.

Published
Jul 1, 2026
Accessed
Sep 19, 2026
Publisher
ruflo
Source type
vendor_security_advisory
Version
GHSA-c4hm-4h84-2cf3 / CVE-2026-59726

Each support, contradiction or context label applies to a cited Claim, not to a whole Case.

Source record

A patched redeploy alone does NOT undo poisoning.

Read the original source ↗

Claim-level citations (5)

Cite this record

DiggingBeagle. “Unauthenticated RCE in ruflo MCP bridge default docker-compose deployment.” Published Jul 1, 2026 · Accessed Sep 19, 2026. https://diggingbeagle.com/sources/unauthenticated-rce-in-ruflo-mcp-bridge-default-docker-compose-deployment/

Citation guidance

Why this archive exists

The source matters after the headline fades.

DiggingBeagle is a non profit research project documenting AI security incidents, agent failures, vulnerabilities and AI-assisted operations. A case keeps its claims beside the sources that support, contest or limit them. Later updates stay visible, so a reader can see when the account changed.

We publish case reconstructions, dated reporting and analysis across records. Each has a different evidentiary role. About the project and our methodology explain how the work is reviewed.