Description
IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execute arbitrary code due to an incomplete environment variable blocklist.
Published: 2026-09-10
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Remote Code Execution
Action: Patch Now
AI Analysis

Impact

IBM Langflow OSS versions 1.0.0 through 1.11.5 contain an incomplete environment variable blocklist that allows an authenticated user to execute arbitrary code. The flaw is a classic code injection issue and is identified as CWE-94. Because the code is executed in the context of the application, an attacker who can authenticate can run any code, potentially leading to a complete compromise of the host system.

Affected Systems

The affected product is IBM Langflow OSS. All releases from 1.0.0 to 1.11.5 are impacted. Users who have not upgraded to version 1.11.6 are at risk. The product is normally deployed in open‑source Python environments.

Risk and Exploitability

The CVSS score of 8.8 classifies this vulnerability as high severity. There is no EPSS estimate available, but the lack of an estimate does not reduce the risk. The flaw requires authenticated access and does not rely on other environmental prerequisites. Consequently, any user who obtains valid credentials can exploit the flaw easily. The vulnerability is not listed in the CISA KEV catalog, yet the high severity rating and authentication requirement make it a priority for organizations that expose Langflow OSS to external traffic.

Generated by OpenCVE AI on September 11, 2026 at 04:46 UTC.

Remediation

Vendor Solution

IBM strongly recommends addressing the vulnerability now by upgrading Langflow OSS to version 1.11.6 https://pypi.org/project/langflow/


OpenCVE Recommended Actions

  • Upgrade IBM Langflow OSS to version 1.11.6 immediately.
  • Restrict authentication to trusted users and remove or limit unnecessary administrative accounts.
  • Apply firewall or VPN restrictions so that only trusted internal networks can reach the Langflow OSS instance, and monitor application logs for suspicious environment variable usage.

Generated by OpenCVE AI on September 11, 2026 at 04:46 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 10 Sep 2026 21:45:00 +0000

Type Values Removed Values Added
Description IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execute arbitrary code due to an incomplete environment variable blocklist.
Title Langflow is vulnerable to arbitrary code execution due to multiple incomplete code security controls and missing execution guards
First Time appeared Ibm
Ibm langflow Oss
Weaknesses CWE-94
CPEs cpe:2.3:a:ibm:langflow_oss:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:langflow_oss:1.11.5:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm langflow Oss
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


Subscriptions

Ibm Langflow Oss
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-09-10T21:39:44.179Z

Reserved: 2026-08-25T14:07:10.317Z

Link: CVE-2026-79742

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-10T22:17:00.780

Modified: 2026-09-10T22:17:00.780

Link: CVE-2026-79742

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-11T07:15:16Z

Weaknesses
  • CWE-94

    Improper Control of Generation of Code ('Code Injection')