EUVD-2026-45236
IBM Langflow OSS 1.0.0 through 1.10.0 allows unauthenticated attackers to chain /api/v1/auto_login (mints SUPERUSER tokens to any network caller) with /api/v1/validate/code (executes user code via exec()) to achieve full RCE on default Langflow deployments
- EUVD state
- Present in the current official mapping
- Known exploitation
- Recorded by ENISA since 4 Aug 2026. Evidence sources: cisa_kev.
- ENISA score
- 9.8 · CVSS 3.1
- Advisory evidence
- 1 linked advisory record
Only statements that explicitly mention a fix, patch, update, workaround or mitigation are shown here.
- csaf_ncscnl · NCSC-2026-0251Kwetsbaarheden verholpen in IBM Langflow OSS
