← Back to CVE search

CVE-2026-14499

IBM Langflow OSS

Description

IBM Langflow OSS 1.0.0 through 1.10.1 Langflow could allow an authenticated user to execute arbitrary commands with elevated privileges on the system due to improper validation of user supplied input in the Python Interpreter component.

CVSS 8.8EPSS 0.44799999999999995%Risk 0.92
View source
Published
2026-07-17 20:17:14
Affected versions
<=1.10.1
Type
Critical software
Last modified
2026-07-23 05:16:29
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Operating systems
Windows; MacOS; Linux