Description
IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote attacker to execute arbitrary code due to an expected dependency confusion.
Published: 2026-10-07
Score: 8.8 High
EPSS: n/a
KEV: No
Impact: Remote Code Execution via Dependency Confusion
Action: Immediate Patch
AI Analysis

Impact

The vulnerability is a dependency‑confusion flaw that allows a remote attacker to execute arbitrary code within the IBM Langflow OSS service. By manipulating the dependency name resolution process, the attacker can cause the application to import an untrusted module, leading to full control of the host and compromising confidentiality, integrity, and availability. The weakness is formalized as CWE‑440, which describes risks associated with ambiguous or conflicting dependency names.

Affected Systems

The affected product is IBM Langflow OSS. Versions from 1.0.0 up to and including 1.12.2 are impacted. The vendor recommends upgrading to version 1.12.3 to eliminate the issue. Earlier releases of Langflow OSS that do not include the patch remain vulnerable.

Risk and Exploitability

The CVSS score of 8.8 indicates a high severity, while the EPSS score is not provided, leaving the precise exploitation likelihood uncertain. Because the vulnerability is no longer listed in the CISA KEV catalog, there is no current evidence of active exploitation, but the remote nature and the ability to run arbitrary code make it a high-risk target. Attackers could trigger the flaw by publishing a malicious dependency that conflicts with the expected one, a scenario which requires no special privileged credentials and can be performed over the public network.

Generated by OpenCVE AI on October 7, 2026 at 01:54 UTC.

Remediation

Vendor Solution

IBM strongly recommends addressing the vulnerability now by upgrading Langflow OSS to version 1.12.3. https://pypi.org/project/langflow/#description


OpenCVE Recommended Actions

  • Upgrade IBM Langflow OSS to version 1.12.3 or later, following the vendor’s migration guidance
  • Configure the Python dependency resolver to use only trusted registries such as PyPI and to flag or reject packages that conflict with official dependencies
  • Apply network segmentation or firewall rules to limit inbound connections to Langflow OSS and monitor for unusual dependency resolution activity

Generated by OpenCVE AI on October 7, 2026 at 01:54 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 07 Oct 2026 00:30:00 +0000

Type Values Removed Values Added
Description IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote attacker to execute arbitrary code due to an expected dependency confusion.
Title Langflow OSS is affected by multiple vulnerabilities
First Time appeared Ibm
Ibm langflow Oss
Weaknesses CWE-440
CPEs cpe:2.3:a:ibm:langflow_oss:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:langflow_oss:1.12.2:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm langflow Oss
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}


Subscriptions

Ibm Langflow Oss
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-10-07T00:01:27.358Z

Reserved: 2026-09-18T13:51:09.130Z

Link: CVE-2026-93675

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-10-07T01:16:35.320

Modified: 2026-10-07T01:16:35.320

Link: CVE-2026-93675

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-07T04:00:09Z

Weaknesses
  • CWE-440

    Expected Behavior Violation