OCTOBER 10, 2026
Live Feed
Back to database
Case File

CVE-2026-97678

HIGH · CVSS 8.8 EPSS 0.41%

Source: NVD + CISA KEV + EPSS · Published 2026-10-07 · Last synced 2026-10-10

CyberRota Analysis

AI-Generated

IBM Langflow OSS versions 1.0.0 through 1.12.2 are vulnerable to arbitrary code execution due to inadequate input validation, which can be exploited by remote authenticated attackers. Organizations using these versions should prioritize patching to mitigate the risk of unauthorized access and potential system compromise. Immediate action is recommended for any environments utilizing this software to protect against exploitation.

CVE
CVE-2026-97678
Severity
HIGH
CVSS
8.8
EPSS
0.41%

Original NVD Description

IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper input validation.

Related CVEs

Other vulnerabilities affecting the same vendor(s)