CVE Browser

Page 1 (more results available)

Vendor: Langflow Remove filter Clear all
CVE-2026-93678 HIGH

IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to obtain sensitive information due to improper authorization.

CVSS 7.6 EPSS 0.38% Oct 7, 2026
CVE-2026-93679 MEDIUM

Langflow OSS is affected by multiple vulnerabilities

CVSS 4.3 EPSS 0.47% Oct 7, 2026
CVE-2026-97671 MEDIUM

Langflow OSS is affected by multiple vulnerabilities

CVSS 6.5 EPSS 0.45% Oct 7, 2026
CVE-2026-97673 HIGH

Langflow OSS is affected by multiple vulnerabilities

CVSS 8.8 EPSS 0.43% Oct 7, 2026
CVE-2026-97674 HIGH

Langflow OSS is affected by multiple vulnerabilities

CVSS 8.1 EPSS 0.29% Oct 6, 2026
CVE-2026-97678 HIGH

Langflow OSS is affected by multiple vulnerabilities

CVSS 8.8 EPSS 0.41% Oct 6, 2026
CVE-2026-97679 HIGH

Langflow OSS is affected by multiple vulnerabilities

CVSS 8.8 EPSS 0.44% Oct 6, 2026
CVE-2026-97680 HIGH

Langflow OSS is affected by multiple vulnerabilities

CVSS 8.3 EPSS 0.27% Oct 6, 2026
CVE-2026-97655 HIGH

Langflow OSS is affected by multiple vulnerabilities

CVSS 8.8 EPSS 0.54% Oct 6, 2026
CVE-2026-97676 HIGH

Langflow OSS is affected by multiple vulnerabilities

CVSS 8.8 EPSS 0.54% Oct 6, 2026
CVE-2026-76059 HIGH

Langflow is vulnerable to arbitrary code execution due to multiple incomplete code security controls and missing execution guards

CVSS 8.8 EPSS 0.68% Sep 10, 2026
CVE-2026-78569 HIGH

Langflow is vulnerable to arbitrary code execution due to multiple incomplete code security controls and missing execution guards

CVSS 8.8 EPSS 0.65% Sep 10, 2026
CVE-2026-78571 HIGH

Langflow is vulnerable to arbitrary code execution due to multiple incomplete code security controls and missing execution guards

CVSS 8.8 EPSS 0.81% Sep 10, 2026
CVE-2026-78575 HIGH

Langflow is vulnerable to arbitrary code execution due to multiple incomplete code security controls and missing execution guards

CVSS 8.8 EPSS 0.79% Sep 10, 2026
CVE-2026-79723 MEDIUM

Langflow is vulnerable to server-side request forgery due to missing egress validation on server-side URL fetches

CVSS 5.0 EPSS 0.35% Sep 10, 2026
CVE-2026-79724 CRITICAL

Langflow is vulnerable to arbitrary code execution due to multiple incomplete code security controls and missing execution guards

CVSS 9.8 EPSS 0.67% Sep 10, 2026
CVE-2026-79725 MEDIUM

Langflow is vulnerable to unauthorized file system access due to path traversal and missing storage path validation

CVSS 6.5 EPSS 0.41% Sep 10, 2026
CVE-2026-79742 HIGH

Langflow is vulnerable to arbitrary code execution due to multiple incomplete code security controls and missing execution guards

CVSS 8.8 EPSS 0.81% Sep 10, 2026
CVE-2026-81204 CRITICAL

Langflow is vulnerable to arbitrary code execution due to multiple incomplete code security controls and missing execution guards

CVSS 9.8 EPSS 0.86% Sep 10, 2026
CVE-2026-81211 HIGH

Langflow is vulnerable to arbitrary code execution due to multiple incomplete code security controls and missing execution guards

CVSS 8.8 EPSS 0.50% Sep 10, 2026
CVE-2026-81941 HIGH

Langflow is vulnerable to arbitrary code execution due to multiple incomplete code security controls and missing execution guards

CVSS 8.8 EPSS 0.63% Sep 10, 2026
CVE-2026-81213 HIGH

Langflow is vulnerable to server-side request forgery due to missing egress validation on server-side URL fetches

CVSS 8.6 EPSS 0.49% Sep 10, 2026
CVE-2026-81265 HIGH

Langflow is vulnerable to server-side request forgery due to missing egress validation on server-side URL fetches

CVSS 7.5 EPSS 0.39% Sep 10, 2026
CVE-2026-81268 HIGH

Langflow is vulnerable to authentication bypass and insufficient session expiration

CVSS 8.1 EPSS 0.43% Sep 10, 2026
CVE-2026-81940 HIGH

Langflow is vulnerable to arbitrary code execution due to multiple incomplete code security controls and missing execution guards

CVSS 8.8 EPSS 0.81% Sep 10, 2026

Showing 1 to 25 CVEs · page 1 (more available)