CyberRota Analysis
AI-GeneratedIBM Langflow OSS versions 1.0.0 through 1.10.3 are vulnerable to arbitrary code execution due to inadequate validation of Python code during AST-based security scanning, allowing remote authenticated attackers to exploit this weakness. Organizations using these versions should prioritize patching to mitigate the risk of unauthorized code execution and potential system compromise. Immediate action is recommended for users in environments where Langflow is deployed.
Original NVD Description
IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary code due to improper validation of Python code during AST-based security scanning.
Related CVEs
Other vulnerabilities affecting the same vendor(s)