CVE-2026-9198 CRITICAL

IBM Langflow Vulnerability
Generated: 10 Oct 2026 19:23 • CVE Threat Intelligence

Description

Langflow contains a code injection vulnerability that allows unauthenticated attackers to achieve full remote code execution on default Langflow deployments.

9.8
CVSS CRITICAL

Details

Published
04 Aug 2026 00:00
Modified
N/A
Source
CIRCL
Vendor
IBM
Product
Langflow
Fix Version
Vendor Patch / Mitigation Available

References