AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-17625

HIGH · CVSS 7.2 EPSS 0.78%

Source: NVD + CISA KEV + EPSS · Published 2026-08-05 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

IBM Langflow OSS versions 1.0.0 through 1.10.3 are vulnerable to a command injection flaw that allows remote authenticated attackers to execute arbitrary commands on the server. This high-severity vulnerability poses significant risks to the integrity and confidentiality of affected systems. Organizations using these versions should prioritize immediate remediation to mitigate potential exploitation.

CVE
CVE-2026-17625
Severity
HIGH
CVSS
7.2
EPSS
0.78%

Original NVD Description

IBM Langflow OSS 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, and 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.

Related CVEs

Other vulnerabilities affecting the same vendor(s)