Langflow OSS vulnerability

IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of special characters in flow display names.

Published 10 Sep 2026Updated 12 Sep 20261 sources
CVSS 8.8

Source timeline

CVE record published by NVDView source ↗