CVSS 10.0 RufRoot Flaw Allowed Attackers to Hijack Ruflo Without Logging In Hackread – Latest Cybersecurity, Tech, Crypto & Hacking News Por:Waqas 29 de Julho de 2026, 11:58 Ruflo fixed a CVSS 10.0 flaw that exposed its MCP bridge without any authentication, putting AI provider keys, stored chats and persistent agent memory at risk. 💾