Impact
IBM Langflow OSS versions 1.0.0 through 1.11.1 are vulnerable to remote code execution via improper control over the generation of code. An attacker who is authenticated to the application can supply data that is later compiled and executed, giving the attacker arbitrary control over the host system. The primary impact is that the attacker can gain full compromise over the affected infrastructure, enabling new shell sessions, persistence, and data exfiltration. This weakness correlates with CWE-94, which denotes unsafe code generation. The vulnerability can be exploited by an attacker who can log into a Langflow instance, submit malicious input that is processed as code, and thereby gain control.
Affected Systems
The affected vendor is IBM, with the product Langflow OSS. All releases from 1.0.0 up to and including 1.11.1 are susceptible. The patched release, 1.11.2, contains a fix that enforces proper code‑execution policy enforcement.
Risk and Exploitability
The CVSS score of 8.8 indicates high severity, and the EPSS score is unavailable, so exact exploitation probability is uncertain. The vulnerability is not listed in CISA’s KEV catalog, but the high CVSS score and requirement of authenticated access suggest that an attacker with legitimate credentials could readily exploit the flaw. The likely attack vector is a remote authenticated user who submits malicious payload through the code‑generation interface, resulting in locally‑executed arbitrary code.
OpenCVE Enrichment