Vulnerabilidad · Publicado 17/07/2026 · Actualizado 01/08/2026
IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated users to escalate privileges to superuser by directly manipulating the database, execute arbitrary system commands, and achieve full system compromise with Langflow service permissions.
IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated users to escalate privileges to superuser by directly manipulating the database, execute arbitrary system commands, and achieve full system compromise with Langflow service permissions.
Score: 9.9/10 — Severidad: CRITICAL — Estado NIST: Analyzed
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Langflow, Macos, Linux kernel, Windows — Langflow, Apple, Linux
CWE-94
Publicado en NIST NVD.