CyberRota Analysis
AI-GeneratedIBM Langflow OSS versions 1.0.0 to 1.10.3 are vulnerable to remote code injection due to inadequate validation of user input. This flaw could allow an attacker to execute arbitrary code on the affected systems, potentially leading to unauthorized access and control. Organizations using these versions should prioritize patching to mitigate the risk of exploitation.
CVE
CVE-2026-8478
Severity
HIGH
CVSS
8.8
EPSS
0.37%
Original NVD Description
IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote attacker to inject arbitrary code on the system, due to the improper control of user input code.
Related CVEs
Other vulnerabilities affecting the same vendor(s)