LIVE · cybersecurity feed
Live wire
vendor3 exploited in the wild

Langflow

80 CVEs published in the last four months and 7 stories. Exploited flaws first.

Critical33
High47
Medium0
Exploited (KEV)3

Patch these first

CVECVSSSeverityProductSummaryPublished
CVE-2026-33017exploited9.8criticallangflowLangflow is a tool for building and deploying AI-powered agents and workflows.169d ago
CVE-2026-9198exploited9.8criticallangflowIBM Langflow OSS 1.0.0 through 1.10.0 allows unauthenticated attackers to chain /api/v1/auto_login (mints SUPERUSER50d ago
CVE-2026-55255exploited8.4highlangflowLangflow is a tool for building and deploying AI-powered agents and workflows.74d ago

All recent CVEs

CVECVSSSeverityProductSummaryPublished
CVE-2026-1056110criticallangflowIBM Langflow OSS 1.0.0 through 1.9.3 has an vulnerability due to an improper isolation of Python execution combine75d ago
CVE-2026-1013410criticallangflowIBM Langflow OSS 1.0.0 through 1.9.3 allows an attacker to read every secret available to the Langflow process, re67d ago
CVE-2026-129469.9criticallangflowIBM Langflow OSS 1.0.0 through 1.10.0 could allow a remote attacker to inject arbitrary code on the system, due to37d ago
CVE-2026-134359.9criticallangflowIBM Langflow OSS 1.0.0 through 1.10.1 contains an improper input validation vulnerability in the PythonREPL sandbo37d ago
CVE-2026-88599.9criticallangflowIBM Langflow OSS 1.0.0 through 1.10.0 Langflow could allow an attacker to write arbitrary files to unintended locat50d ago
CVE-2026-86359.9criticallangflowIBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated users to escalate privileges to superuser by directly ma50d ago
CVE-2026-333099.9criticallangflowLangflow is a tool for building and deploying AI-powered agents and workflows.165d ago
CVE-2026-84819.9criticallangflowIBM Langflow OSS 1.0.0 through 1.10.0 contain a critical remote code execution vulnerability in the code validation50d ago
CVE-2026-84769.9criticallangflowIBM Langflow OSS 1.0.0 through 1.10.0 contain a critical remote code execution vulnerability in the disk-based cach50d ago
CVE-2026-91359.9criticallangflowIBM Langflow OSS 1.0.0 through 1.10.0 Langflow versions up to 1.9.2 (commit 94981c443d4918517b9e8163d70fc598dc33a3250d ago
CVE-2026-192959.9criticallangflowIBM Langflow OSS 1.0.0 through 1.11.1 allows an authenticated attacker to execute arbitrary operating system comma8d ago
CVE-2026-78739.9criticallangflowIBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated attackers to execute arbitrary OS commands and read sens67d ago
CVE-2026-33017exploited9.8criticallangflowLangflow is a tool for building and deploying AI-powered agents and workflows.169d ago
CVE-2026-75249.8criticallangflowIBM Langflow OSS 1.0.0 through 1.9.1 could allow remote code execution due to improper validation of symbolic links101d ago
CVE-2026-76649.8criticallangflowIBM Langflow OSS 1.0.0 through 1.8.4 could allow unauthenticated attackers to access protected MCP project resource75d ago
CVE-2026-78039.8criticallangflowIBM Langflow OSS 1.0.0 through 1.10.0 could allow arbitrary code execution due to improper validation of flow nodes67d ago
CVE-2026-78719.8criticallangflowIBM Langflow OSS 1.0.0 through 1.10.0 allows users with Redis access to execute arbitrary code with full applicatio67d ago
CVE-2026-9198exploited9.8criticallangflowIBM Langflow OSS 1.0.0 through 1.10.0 allows unauthenticated attackers to chain /api/v1/auto_login (mints SUPERUSER50d ago
CVE-2026-92029.8criticallangflowIBM Langflow OSS 1.0.0 through 1.10.0 allows unauthenticated attackers to create unlimited user accounts on any Lan50d ago
CVE-2026-91039.8criticallangflowIBM Langflow OSS 1.0.0 through 1.10.0 could allow a remote attacker to gain unauthorized access due to improper aut50d ago
CVE-2026-85059.8criticallangflowIBM Langflow OSS 1.0.0 through 1.10.0 has a vulnerability in Langflow's webhook authentication logic allows unauthe50d ago
CVE-2026-134469.8criticallangflowIBM Langflow OSS 1.0.0 through 1.10.1 contains hard-coded credentials, such as a password or cryptographic key, wh50d ago
CVE-2026-129409.8criticallangflowIBM Langflow OSS 1.0.0 through 1.10.1 are vulnerable to unauthenticated remote code execution via environment vari37d ago
CVE-2026-192869.8criticallangflowIBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote attacker to execute arbitrary code due to improper enfo8d ago
CVE-2026-554479.6criticallangflowLangflow is a tool for building and deploying AI-powered agents and workflows.74d ago
CVE-2026-485199.6criticallangflowLangflow is a tool for building and deploying AI-powered agents and workflows.74d ago
CVE-2026-420489.6criticallangflowLangflow is a tool for building and deploying AI-powered agents and workflows.116d ago
CVE-2026-101409.6criticallangflowIBM Langflow OSS 1.0.0 through 1.10.0 voice mode contains improper shared-state handling that allows reuse of API 67d ago
CVE-2026-554509.3criticallangflowLangflow is a tool for building and deploying AI-powered agents and workflows.74d ago
CVE-2026-78749.1criticallangflowIBM Langflow OSS 1.0.0 through 1.10.0 Langflow could allow disclosure of all stored credentials due to the use of a67d ago
CVE-2026-76639.1criticallangflowIBM Langflow OSS 1.0.0 through 1.9.6 could allow unauthenticated attackers to access protected MCP project resource67d ago
CVE-2026-192979.1criticallangflowIBM Langflow OSS 1.0.0 through 1.9.6 could allow a remote attacker to obtain unauthorized access to user accounts 23d ago
CVE-2026-334759.1criticallangflowLangflow is a tool for building and deploying AI-powered agents and workflows.165d ago
CVE-2026-84788.8highlangflowIBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote attacker to inject arbitrary code on the system, due to 31d ago
CVE-2026-81828.8highlangflowIBM Langflow OSS 1.0.0 through 1.10.3 installations allow anyone on the internet to execute arbitrary code on the s31d ago
CVE-2026-176238.8highlangflowIBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary commands du31d ago
CVE-2026-176328.8highlangflowIBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary code due to31d ago
CVE-2026-187298.8highlangflowIBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote authenticated attacker to execute arbitrary code due to8d ago
CVE-2026-337608.8highlangflowLangflow is a tool for building and deploying AI-powered agents and workflows.74d ago
CVE-2026-144998.8highlangflowIBM Langflow OSS 1.0.0 through 1.10.1 Langflow could allow an authenticated user to execute arbitrary commands wit50d ago
CVE-2026-76678.8highlangflowIBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to create a malicious flow pointing to an at50d ago
CVE-2026-77558.8highlangflowIBM Langflow OSS 1.0.0 through 1.10.0 Langflow could allow remote code execution due to incomplete validation enfor50d ago
CVE-2026-80568.8highlangflowIBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated users to override component parameters at runtime via th50d ago
CVE-2026-92018.8highlangflowIBM Langflow OSS 1.0.0 through 1.10.3 could allow an authenticated attacker to execute arbitrary code due to a cryp31d ago
CVE-2026-330538.8highlangflowLangflow is a tool for building and deploying AI-powered agents and workflows.169d ago
CVE-2026-176268.8highlangflowIBM Langflow OSS 1.0.0 through 1.10.3 Langflow could allow an authenticated attacker to read, modify, or expose se31d ago
CVE-2026-101298.5highlangflowIBM Langflow OSS 1.0.0 through 1.9.3 contains a Server-Side Request Forgery (SSRF) protection bypass vulnerability67d ago
CVE-2026-176338.5highlangflowIBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary code due to31d ago
CVE-2026-176248.5highlangflowIBM Langflow OSS 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 thr31d ago
CVE-2026-90778.5highlangflowIBM Langflow OSS 1.0.0 through 1.10.3 Langflow allows remote authenticated attackers to bypass localhost-only restr31d ago
CVE-2026-55255exploited8.4highlangflowLangflow is a tool for building and deploying AI-powered agents and workflows.74d ago
CVE-2026-105648.2highlangflowIBM Langflow OSS 1.0.0 through 1.9.6 contains a Server-Side Request Forgery (SSRF).67d ago
CVE-2026-188918.2highlangflowIBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote attacker to execute arbitrary flows and access sensitiv8d ago
CVE-2026-189048.2highlangflowIBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote attacker to obtain sensitive information and inject una8d ago
CVE-2026-105608.2highlangflowIBM Langflow OSS 1.0.0 through 1.9.6 contains a missing authentication vulnerability in /api/v1/build_public_tmp/ 67d ago
CVE-2026-91968.1highlangflowIBM Langflow OSS 1.0.0 through 1.10.3 could allow an authenticated attacker to execute unintended code during Agent31d ago
CVE-2026-134488.1highlangflowIBM Langflow OSS 1.0.0 through 1.10.1 Lanflow OSS contains an unauthenticated remote code execution vulnerability 50d ago
CVE-2026-134448.1highlangflowIBM Langflow OSS 1.0.0 through 1.10.1 can allow an attacker to access another user's private vector documents by c37d ago
CVE-2026-134458.1highlangflowIBM Langflow OSS 1.0.0 through 1.10.1 can allow an authenticated attacker to exploit the SaveToFile component to r50d ago
CVE-2026-81837.7highlangflowIBM Langflow OSS 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 thro31d ago
CVE-2026-77547.7highlangflowIBM Langflow OSS 1.0.0 through 1.10.0 Langflow 1.9.0 could allow server-side request forgery (SSRF) due to insecure50d ago
CVE-2026-188997.5highlangflowIBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote attacker to read arbitrary files due to path traversal.8d ago
CVE-2026-84467.5highlangflowIBM Langflow OSS 1.0.0 through 1.10.3 contain an authentication bypass vulnerability in the Model Context Protocol 31d ago
CVE-2026-334847.5highlangflowLangflow is a tool for building and deploying AI-powered agents and workflows.165d ago
CVE-2026-334977.5highlangflowLangflow is a tool for building and deploying AI-powered agents and workflows.165d ago
CVE-2026-129427.5highlangflowIBM Langflow OSS 1.0.0 through 1.10.1 could allow a remote attacker to traverse directories on the system.37d ago
CVE-2026-554467.5highlangflowLangflow is a tool for building and deploying AI-powered agents and workflows.74d ago
CVE-2026-77877.5highlangflowIBM Langflow OSS 1.0.0 through 1.9.1 could allow an authenticated user to read or modify sensitive information by b86d ago
CVE-2026-78727.5highlangflowIBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to read arbitrary files including the JWT si50d ago
CVE-2026-198757.5highlangflowIBM Langflow OSS 1.0.0 through 1.10.0 could allow a remote attacker to overwrite administrator email information a17d ago
CVE-2026-84707.4highlangflowIBM Langflow OSS 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, and 1.0.0 through 1.10.3 use Pyt31d ago
CVE-2026-92057.4highlangflowIBM Langflow OSS contains a weak cryptographic key derivation vulnerability in the ensure_fernet_key() function.31d ago
CVE-2026-176307.2highlangflowIBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote attacker to execute arbitrary code due to improper vali31d ago
CVE-2026-176257.2highlangflowIBM Langflow OSS 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 thr31d ago
CVE-2026-75287.1highlangflowIBM Langflow OSS 1.0.0 through 1.9.0 could allow a denial of service due to uncontrolled resource consumption.101d ago
CVE-2026-91307.1highlangflowIBM Langflow OSS 1.0.0 through 1.10.3 contain an authorization bypass vulnerability in the MemoryComponent that all31d ago
CVE-2026-90817.1highlangflowIBM Langflow OSS 1.0.0 through 1.10.3, and 1.0.0 through 1.10.3 contains a Server-Side Request Forgery (SSRF) vulne31d ago
CVE-2026-134427.1highlangflowIBM Langflow OSS 1.0.0 through 1.10.1 can allow an attacker to reuse another user's FAISS namespace to access owne39d ago
CVE-2026-129457.1highlangflowIBM Langflow OSS 1.0.0 through 1.10.1 allows authenticated users to access and manipulate other users' build jobs 37d ago
CVE-2026-105467.1highlangflowIBM Langflow OSS 1.0.0 through 1.9.3 contains a Server-Side Request Forgery (SSRF) vulnerability in the URL compon67d ago

Filter the full tracker by Langflow

Our coverage of Langflow

CVE-2026-0768critical

Critical Langflow flaw exploited to steal OpenAI and AWS keys

Threat actors are exploiting an unauthenticated remote code execution vulnerability (CVE-2026-0768) in Langflow, an open-source framework for building AI applications, to steal credentials, tokens, and keys. [...]

vulnerabilityhigh

CISA orders urgent action on actively exploited Langflow RCE flaw

The Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday ordered U.S. government agencies to prioritize patching an actively exploited vulnerability in the Langflow visual framework for building AI agents. [...]

CVE-2026-55255critical

Attackers using Langflow flaw for credential harvesting (CVE-2026-55255)

CISA has issued a warning regarding a critical vulnerability (CVE-2026-55255) in the Langflow AI framework, which is being actively exploited by attackers. The flaw allows authenticated users to execute arbitrary flows belonging to other users, potentially leading to the theft of sensitive credentials and data exposure, especially in multi-tenant environments. US federal agencies have been mandated to patch this vulnerability by July 10th.

cisahigh

CISA orders feds to prioritize patching Langflow auth bypass flaw

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has mandated federal agencies to prioritize patching a critical authentication bypass vulnerability within the Langflow AI agent framework. This directive comes as the flaw is reportedly being actively exploited.

CVE-2026-48282critical

U.S. CISA adds Adobe ColdFusion, Joomlack Page Builder, Langflow, and JoomShaper SP Page Builder flaws to its Known Exploited Vulnerabilities catalog

The U.S. CISA has added several vulnerabilities to its catalog of actively exploited flaws. These include a critical path traversal vulnerability in Adobe ColdFusion that allows for unauthenticated code execution, and multiple issues affecting Joomlack Page Builder and JoomShaper SP Page Builder that can lead to unauthorized access and malicious file uploads. Organizations are urged to update affected software immediately.

CVE-2026-48282high

CISA Adds 4 Actively Exploited Adobe, Joomla, and Langflow Flaws to KEV

CISA has incorporated four new vulnerabilities into its Known Exploited Vulnerabilities (KEV) catalog. These flaws, affecting products from Adobe, Joomla, and Langflow, are all currently under active exploitation.

ransomware

AI Agent Exploits Langflow RCE to Automate Database Ransomware Attack

Security firm Sysdig says it has found what it believes is the first ransomware attack run from start to finish by an AI agent. Its Threat Research Team calls the operator JADEPUFFER and says a large language model handled the whole job: br