MEDIUM
Langflow is vulnerable to stored cross-site scripting and IP spoofing due to unsanitized Markdown rendering and untrusted proxy header trust
Published Sep 4, 2026
6.5
MEDIUMCVSS 3.1
EPSS 0.38%
Description
Affected products
Remediation
References (2)
Change history (0)
No recorded changes yet.