| CVE-2026-10134 | 10 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.9.3 allows an attacker to read every secret available to the Langflow process, re | 67d ago |
| CVE-2026-10561 | 10 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.9.3 has an vulnerability due to an improper isolation of Python execution combine | 75d ago |
| CVE-2026-19295 | 9.9 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.11.1 allows an authenticated attacker to execute arbitrary operating system comma | 8d ago |
| CVE-2026-12946 | 9.9 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.10.0 could allow a remote attacker to inject arbitrary code on the system, due to | 37d ago |
| CVE-2026-13435 | 9.9 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.10.1 contains an improper input validation vulnerability in the PythonREPL sandbo | 37d ago |
| CVE-2026-8859 | 9.9 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.10.0 Langflow could allow an attacker to write arbitrary files to unintended locat | 50d ago |
| CVE-2026-8635 | 9.9 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated users to escalate privileges to superuser by directly ma | 50d ago |
| CVE-2026-8481 | 9.9 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.10.0 contain a critical remote code execution vulnerability in the code validation | 50d ago |
| CVE-2026-8476 | 9.9 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.10.0 contain a critical remote code execution vulnerability in the disk-based cach | 50d ago |
| CVE-2026-9135 | 9.9 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.10.0 Langflow versions up to 1.9.2 (commit 94981c443d4918517b9e8163d70fc598dc33a32 | 50d ago |
| CVE-2026-7873 | 9.9 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated attackers to execute arbitrary OS commands and read sens | 67d ago |
| CVE-2026-33309 | 9.9 | critical | langflow / langflow | Langflow is a tool for building and deploying AI-powered agents and workflows. | 165d ago |
| CVE-2026-19286 | 9.8 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote attacker to execute arbitrary code due to improper enfo | 8d ago |
| CVE-2026-12940 | 9.8 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.10.1 are vulnerable to unauthenticated remote code execution via environment vari | 37d ago |
| CVE-2026-13446 | 9.8 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.10.1 contains hard-coded credentials, such as a password or cryptographic key, wh | 50d ago |
| CVE-2026-8505 | 9.8 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.10.0 has a vulnerability in Langflow's webhook authentication logic allows unauthe | 50d ago |
| CVE-2026-9103 | 9.8 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.10.0 could allow a remote attacker to gain unauthorized access due to improper aut | 50d ago |
| CVE-2026-9202 | 9.8 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.10.0 allows unauthenticated attackers to create unlimited user accounts on any Lan | 50d ago |
| CVE-2026-9198exploited | 9.8 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.10.0 allows unauthenticated attackers to chain /api/v1/auto_login (mints SUPERUSER | 50d ago |
| CVE-2026-7871 | 9.8 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.10.0 allows users with Redis access to execute arbitrary code with full applicatio | 67d ago |
| CVE-2026-7803 | 9.8 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.10.0 could allow arbitrary code execution due to improper validation of flow nodes | 67d ago |
| CVE-2026-7664 | 9.8 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.8.4 could allow unauthenticated attackers to access protected MCP project resource | 75d ago |
| CVE-2026-7524 | 9.8 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.9.1 could allow remote code execution due to improper validation of symbolic links | 101d ago |
| CVE-2026-33017exploited | 9.8 | critical | langflow / langflow | Langflow is a tool for building and deploying AI-powered agents and workflows. | 170d ago |
| CVE-2026-10140 | 9.6 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.10.0 voice mode contains improper shared-state handling that allows reuse of API | 67d ago |
| CVE-2026-55447 | 9.6 | critical | langflow / langflow | Langflow is a tool for building and deploying AI-powered agents and workflows. | 74d ago |
| CVE-2026-48519 | 9.6 | critical | langflow / langflow | Langflow is a tool for building and deploying AI-powered agents and workflows. | 74d ago |
| CVE-2026-42048 | 9.6 | critical | langflow / langflow | Langflow is a tool for building and deploying AI-powered agents and workflows. | 116d ago |
| CVE-2026-55450 | 9.3 | critical | langflow / langflow | Langflow is a tool for building and deploying AI-powered agents and workflows. | 74d ago |
| CVE-2026-19297 | 9.1 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.9.6 could allow a remote attacker to obtain unauthorized access to user accounts | 23d ago |
| CVE-2026-7874 | 9.1 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.10.0 Langflow could allow disclosure of all stored credentials due to the use of a | 67d ago |
| CVE-2026-7663 | 9.1 | critical | langflow / langflow | IBM Langflow OSS 1.0.0 through 1.9.6 could allow unauthenticated attackers to access protected MCP project resource | 67d ago |
| CVE-2026-33475 | 9.1 | critical | langflow / langflow | Langflow is a tool for building and deploying AI-powered agents and workflows. | 165d ago |