Description
IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary code due to code injection.
Published: 2026-08-05
Score: 8.5 High
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

IBM Langflow OSS versions 1.0.0 through 1.10.3 contain a code injection flaw that allows a remote authenticated attacker to run arbitrary code. The vulnerability arises during component generation, validation, and custom component handling, where unsanitized input can be executed as code. This flaw enables attackers to compromise confidentiality, integrity, and availability of the system, granting them full command execution within the application’s environment.

Affected Systems

IBM Langflow OSS, specifically versions 1.0.0 to 1.10.3. The issue does not affect newer releases such as 1.11.0 and above.

Risk and Exploitability

The CVSS score of 8.5 indicates high severity. EPSS is not available, so a precise likelihood estimate cannot be given, but the flaw is known to be exploitable by authenticated users, implying a moderate to high risk of real‑world attack. The vulnerability is not listed in CISA’s KEV catalog, yet the impact level warrants immediate remediation.

Generated by OpenCVE AI on August 5, 2026 at 20:23 UTC.

Remediation

Vendor Solution

IBM recommends upgrading to Langflow OSS 1.11.0 or newer https://github.com/langflow-ai/langflow/releases


OpenCVE Recommended Actions

  • Upgrade IBM Langflow OSS to version 1.11.0 or newer.
  • If an upgrade is not possible, restrict or disable authentication for the Langflow service until the patch is applied.
  • Revoke and audit any credentials that may have been compromised and monitor audit logs for suspicious activity.

Generated by OpenCVE AI on August 5, 2026 at 20:23 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 05 Aug 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 05 Aug 2026 19:15:00 +0000

Type Values Removed Values Added
Description IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary code due to code injection.
Title Langflow OSS is affected by arbitrary code execution in component generation, validation, and custom component handling
First Time appeared Ibm
Ibm langflow Oss
Weaknesses CWE-94
CPEs cpe:2.3:a:ibm:langflow_oss:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:langflow_oss:1.10.3:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm langflow Oss
References
Metrics cvssV3_1

{'score': 8.5, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H'}


Subscriptions

Ibm Langflow Oss
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-08-05T19:22:03.465Z

Reserved: 2026-07-27T21:17:08.322Z

Link: CVE-2026-17633

cve-icon Vulnrichment

Updated: 2026-08-05T19:21:58.578Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-05T20:30:06Z

Weaknesses
  • CWE-94

    Improper Control of Generation of Code ('Code Injection')