AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-17632

HIGH · CVSS 8.8 EPSS 0.45%

Source: NVD + CISA KEV + EPSS · Published 2026-08-05 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

IBM Langflow OSS versions 1.0.0 through 1.10.3 are vulnerable to arbitrary code execution due to inadequate validation of Python code during AST-based security scanning, allowing remote authenticated attackers to exploit this weakness. Organizations using these versions should prioritize patching to mitigate the risk of unauthorized code execution and potential system compromise. Immediate action is recommended for users in environments where Langflow is deployed.

CVE
CVE-2026-17632
Severity
HIGH
CVSS
8.8
EPSS
0.45%

Original NVD Description

IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary code due to improper validation of Python code during AST-based security scanning.

Related CVEs

Other vulnerabilities affecting the same vendor(s)