OCTOBER 10, 2026
Live Feed
Back to database
Case File

CVE-2026-97676

HIGH · CVSS 8.8 EPSS 0.55%

Source: NVD + CISA KEV + EPSS · Published 2026-10-07 · Last synced 2026-10-10

CyberRota Analysis

AI-Generated

IBM Langflow OSS versions 1.0.0 through 1.12.2 are vulnerable to a remote authenticated attacker executing arbitrary code due to improper handling of special elements, enabling a sandbox escape. This high-severity flaw poses significant risks to the integrity and confidentiality of systems utilizing these versions. Organizations using affected versions should prioritize patching to mitigate potential exploitation.

CVE
CVE-2026-97676
Severity
HIGH
CVSS
8.8
EPSS
0.55%

Original NVD Description

IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of special elements used in code, resulting in a sandbox escape.

Related CVEs

Other vulnerabilities affecting the same vendor(s)