Known Exploited Vulnerability
9.8
CRITICAL
CVE-2025-3248
Langflow Missing Authentication Vulnerability - [Actively Exploited]
Description

Langflow versions prior to 1.3.0 are susceptible to code injection in the /api/v1/validate/code endpoint. A remote and unauthenticated attacker can send crafted HTTP requests to execute arbitrary code.

INFO

Published Date :

April 7, 2025, 3:15 p.m.

Last Modified :

May 7, 2025, 4:24 p.m.

Remotely Exploitable :

Yes !

Impact Score :

5.9

Exploitability Score :

3.9
CISA Notification
CISA KEV (Known Exploited Vulnerabilities)

For the benefit of the cybersecurity community and network defenders—and to help every organization better manage vulnerabilities and keep pace with threat activity—CISA maintains the authoritative source of vulnerabilities that have been exploited in the wild.

Description :

Langflow contains a missing authentication vulnerability in the /api/v1/validate/code endpoint that allows a remote, unauthenticated attacker to execute arbitrary code via crafted HTTP requests.

Required Action :

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

Notes :

This vulnerability affects a common open-source project, third-party library, or a protocol used by different products. For more information, please see: https://github.com/advisories/GHSA-c995-4fw3-j39m ; https://nvd.nist.gov/vuln/detail/CVE-2025-3248

Public PoC/Exploit Available at Github

CVE-2025-3248 has a 38 public PoC/Exploit available at Github. Go to the Public Exploits tab to see the list.

Affected Products

The following products are affected by CVE-2025-3248 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below.

ID Vendor Product Action
1 Langflow langflow
References to Advisories, Solutions, and Tools

Here, you will find a curated list of external links that provide in-depth information, practical solutions, and valuable tools related to CVE-2025-3248.

URL Resource
https://github.com/langflow-ai/langflow/pull/6911 Patch
https://github.com/langflow-ai/langflow/releases/tag/1.3.0 Release Notes
https://www.horizon3.ai/attack-research/disclosures/unsafe-at-any-speed-abusing-python-exec-for-unauth-rce-in-langflow-ai/ Exploit Third Party Advisory

We scan GitHub repositories to detect new proof-of-concept exploits. Following list is a collection of public exploits and proof-of-concepts, which have been published on GitHub (sorted by the most recently updated).

备份的漏洞库,3月开始我们来维护

Updated: 9 hours, 1 minute ago
1 stars 0 fork 0 watcher
Born at : June 30, 2025, 9:14 a.m. This repo has been linked 216 different CVEs too.

None

Lua

Updated: 2 days, 13 hours ago
0 stars 0 fork 0 watcher
Born at : June 28, 2025, 6:26 p.m. This repo has been linked 1 different CVEs too.

None

Python

Updated: 4 days, 22 hours ago
0 stars 0 fork 0 watcher
Born at : June 28, 2025, 1:03 a.m. This repo has been linked 1 different CVEs too.

None

Dockerfile Makefile Shell JavaScript TypeScript Python Mako HTML CSS

Updated: 1 week ago
0 stars 0 fork 0 watcher
Born at : June 25, 2025, 9:05 a.m. This repo has been linked 1 different CVEs too.

None

Dockerfile Makefile Shell JavaScript TypeScript Python Mako HTML CSS

Updated: 1 week ago
0 stars 0 fork 0 watcher
Born at : June 25, 2025, 9:01 a.m. This repo has been linked 1 different CVEs too.

Langflow versions prior to 1.3.0 are susceptible to code injection in the /api/v1/validate/code endpoint. A remote and unauthenticated attacker can send crafted HTTP requests to execute arbitrary code.

Python

Updated: 1 week ago
0 stars 1 fork 1 watcher
Born at : June 25, 2025, 3:40 a.m. This repo has been linked 1 different CVEs too.

Mass-CVE-2025-3248

Python

Updated: 1 week, 2 days ago
1 stars 0 fork 0 watcher
Born at : June 23, 2025, 9:36 a.m. This repo has been linked 1 different CVEs too.

CVE-2025-3248

Updated: 1 week, 2 days ago
0 stars 0 fork 0 watcher
Born at : June 23, 2025, 9:30 a.m. This repo has been linked 1 different CVEs too.

Remote Code Execution Exploit for Langflow (CVE-2025-3248) - [ By S4Tech ]

Python

Updated: 3 days, 12 hours ago
6 stars 1 fork 1 watcher
Born at : June 23, 2025, 1:23 a.m. This repo has been linked 1 different CVEs too.

Powerful unauthenticated RCE scanner for CVE-2025-3248 affecting Langflow < 1.3.0

Python

Updated: 1 week, 2 days ago
1 stars 0 fork 0 watcher
Born at : June 22, 2025, 4:30 p.m. This repo has been linked 1 different CVEs too.

CVE-2025-3248 – Unauthenticated Remote Code Execution in Langflow via Insecure Python exec Usage

Python

Updated: 1 week, 3 days ago
0 stars 0 fork 0 watcher
Born at : June 22, 2025, 3:49 p.m. This repo has been linked 1 different CVEs too.

CVE-2025-3248 — Langflow RCE Exploit

Python

Updated: 1 week, 6 days ago
0 stars 1 fork 1 watcher
Born at : June 19, 2025, 6:30 a.m. This repo has been linked 1 different CVEs too.

Exploit for Langflow AI Remote Code Execution (Unauthenticated)

Python

Updated: 2 weeks ago
0 stars 0 fork 0 watcher
Born at : June 18, 2025, 7:27 p.m. This repo has been linked 1 different CVEs too.

None

Python

Updated: 2 weeks ago
0 stars 0 fork 0 watcher
Born at : June 18, 2025, 3:42 a.m. This repo has been linked 1 different CVEs too.

CVE-2025-3248 Langflow RCE Exploit

Python

Updated: 2 days, 4 hours ago
13 stars 3 fork 3 watcher
Born at : June 17, 2025, 9:06 a.m. This repo has been linked 1 different CVEs too.

Results are limited to the first 15 repositories due to potential performance issues.

The following list is the news that have been mention CVE-2025-3248 vulnerability anywhere in the article.

  • Cyber Security News
Hackers Exploiting Critical Langflow Vulnerability to Deploy Flodrix Botnet and Take System Control

Langflow, the popular Python framework for rapid AI prototyping, is under siege after researchers disclosed CVE-2025-3248, a flaw in the /api/v1/validate/code endpoint that lets unauthenticated attack ... Read more

Published Date: Jun 30, 2025 (2 days, 9 hours ago)
  • Dark Reading
Hackers Exploit Critical Langflow Flaw to Unleash Flodrix Botnet

Source: BeeBright via ShutterstockAttackers are actively targeting a critical flaw in a popular Python-based Web app for building AI agents and workflows to unleash a powerful botnet that can cause fu ... Read more

Published Date: Jun 17, 2025 (2 weeks, 1 day ago)
  • The Hacker News
New Flodrix Botnet Variant Exploits Langflow AI Server RCE Bug to Launch DDoS Attacks

Cybersecurity researchers have called attention to a new campaign that's actively exploiting a recently disclosed critical security flaw in Langflow to deliver the Flodrix botnet malware. "Attackers u ... Read more

Published Date: Jun 17, 2025 (2 weeks, 1 day ago)
  • Cyber Security News
Hackers Actively Exploiting Langflow RCE Vulnerability to Deploy Flodrix Botnet

Security researchers have uncovered an active cyberattack campaign targeting Langflow servers through CVE-2025-3248, a critical remote code execution vulnerability that allows threat actors to deploy ... Read more

Published Date: Jun 17, 2025 (2 weeks, 1 day ago)
  • Daily CyberSecurity
Langflow Under Attacks: CVE-2025-3248 Exploited to Deliver Stealthy Flodrix Botnet

Trend Micro has uncovered an active and sophisticated campaign exploiting a critical remote code execution (RCE) vulnerability in Langflow, a popular open-source framework for building AI applications ... Read more

Published Date: Jun 16, 2025 (2 weeks, 2 days ago)
  • europa.eu
Cyber Brief 25-06 - May 2025

Cyber Brief (May 2025)June 3, 2025 - Version: 1TLP:CLEARExecutive summaryWe analysed 328 open source reports for this Cyber Brief1.Relating to cyber policy and law enforcement, in Europe, seven EU Mem ... Read more

Published Date: Jun 03, 2025 (4 weeks, 1 day ago)
  • Hackread - Latest Cybersecurity, Hacking News, Tech, AI & Crypto
Critical Langflow Vulnerability (CVE-2025-3248) Actively Exploited, Warns CISA

CISA warns of active exploitation of critical Langflow vulnerability (CVE-2025-3248). Critical RCE flaw allows full server takeover. Patch to version 1.3.0 now! In April 2025, cybersecurity researcher ... Read more

Published Date: May 07, 2025 (1 month, 3 weeks ago)
  • Help Net Security
Actively exploited FreeType flaw fixed in Android (CVE-2025-27363)

Google has released fixes for a bucketload of Android security vulnerabilities, including a FreeType flaw (CVE-2025-27363) that “may be under limited, targeted exploitation.” About CVE-2025-27363 CVE- ... Read more

Published Date: May 07, 2025 (1 month, 3 weeks ago)
  • Dark Reading
'Easily Exploitable' Langflow Vulnerability Requires Immediate Patching

Source: Alexey Kotelnikov via Alamy Stock PhotoNEWS BRIEFA critical flaw found in the open source Langflow platform was added to the US Cybersecurity and Infrastructure Security Agency’s (CISA's) Know ... Read more

Published Date: May 06, 2025 (1 month, 3 weeks ago)
  • BleepingComputer
Critical Langflow RCE flaw exploited to hack AI app servers

The U.S. Cybersecurity & Infrastructure Security Agency (CISA) has tagged a Langflow remote code execution vulnerability as actively exploited, urging organizations to apply security updates and mitig ... Read more

Published Date: May 06, 2025 (1 month, 3 weeks ago)
  • TheCyberThrone
CISA Adds Langflow flaw to KEV Catalog

The Cybersecurity and Infrastructure Security Agency (CISA) has officially added CVE-2025-3248, a critical vulnerability in Langflow, to its Known Exploited Vulnerabilities (KEV) Catalog, citing activ ... Read more

Published Date: May 06, 2025 (1 month, 3 weeks ago)
  • Help Net Security
RCE flaw in tool for building AI agents exploited by attackers (CVE-2025-3248)

A missing authentication vulnerability (CVE-2025-3248) in Langflow, a web application for building AI-driven agents, is being exploited by attackers in the wild, CISA has confirmed by adding it to its ... Read more

Published Date: May 06, 2025 (1 month, 3 weeks ago)
  • security.nl
VS meldt actief misbruik van beveiligingslek in AI-software Langflow

Aanvallers maken actief misbruik van een kritieke kwetsbaarheid in Langflow, opensourcesoftware voor het ontwikkelen en uitrollen van 'AI-powered agents'. Langflow is een op Python-gebaseerde webappli ... Read more

Published Date: May 06, 2025 (1 month, 3 weeks ago)
  • Cyber Security News
CISA Warns of Langflow Missing Authentication Vulnerability Exploited in Attacks

CISA has added a critical Langflow vulnerability to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild. The vulnerability, identified as CVE-2025-324 ... Read more

Published Date: May 06, 2025 (1 month, 3 weeks ago)
  • The Hacker News
Critical Langflow Flaw Added to CISA KEV List Amid Ongoing Exploitation Evidence

Cybersecurity / Vulnerability A recently disclosed critical security flaw impacting the open-source Langflow platform has been added to the Known Exploited Vulnerabilities (KEV) catalog by the U.S. Cy ... Read more

Published Date: May 06, 2025 (1 month, 3 weeks ago)
  • Daily CyberSecurity
Android Security Bulletin May 2025: Multi Vulnerabilities Including Actively Exploited CVE-2025-27363

Google has released its Android Security Bulletin for May 2025, highlighting a range of high-severity vulnerabilities affecting Android OS components, third-party chipsets, and the popular FreeType li ... Read more

Published Date: May 05, 2025 (1 month, 3 weeks ago)
  • Daily CyberSecurity
Langflow Under Attack: CISA Warns of Active Exploitation of CVE-2025-3248

Image: Horizon3.ai The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has officially added CVE-2025-3248 to its Known Exploited Vulnerabilities (KEV) Catalog, citing evidence of active e ... Read more

Published Date: May 05, 2025 (1 month, 3 weeks ago)
  • Daily CyberSecurity
CVE-2024-7399: Samsung MagicINFO Vulnerability Now Actively Exploited in the Wild

A critical security vulnerability, CVE-2024-7399, is being actively exploited in the wild in Samsung MagicINFO 9 Server, a content management system (CMS) widely used for managing digital signage disp ... Read more

Published Date: May 05, 2025 (1 month, 3 weeks ago)
  • Cyber Security News
Critical Langflow Vulnerability Allows Malicious Code Injection – Technical Details Revealed

Cybersecurity researchers have uncovered a critical remote code execution (RCE) vulnerability in Langflow, an open-source platform widely used for visually composing AI-driven agents and workflows. De ... Read more

Published Date: Apr 24, 2025 (2 months, 1 week ago)

The following table lists the changes that have been made to the CVE-2025-3248 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability's severity, exploitability, or other characteristics.

  • Initial Analysis by [email protected]

    May. 07, 2025

    Action Type Old Value New Value
    Added CVSS V3.1 AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
    Added CWE CWE-94
    Added CWE CWE-306
    Added CPE Configuration OR *cpe:2.3:a:langflow:langflow:*:*:*:*:*:*:*:* versions up to (excluding) 1.3.0
    Added Reference Type VulnCheck: https://github.com/langflow-ai/langflow/pull/6911 Types: Patch
    Added Reference Type VulnCheck: https://github.com/langflow-ai/langflow/releases/tag/1.3.0 Types: Release Notes
    Added Reference Type VulnCheck: https://www.horizon3.ai/attack-research/disclosures/unsafe-at-any-speed-abusing-python-exec-for-unauth-rce-in-langflow-ai/ Types: Exploit, Third Party Advisory
  • CVE CISA KEV Update by 9119a7d8-5eab-497f-8521-727c672e3725

    May. 06, 2025

    Action Type Old Value New Value
    Added Date Added 2025-05-05
    Added Due Date 2025-05-26
    Added Required Action Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
    Added Vulnerability Name Langflow Missing Authentication Vulnerability
  • CVE Modified by [email protected]

    Apr. 09, 2025

    Action Type Old Value New Value
    Added Reference https://www.horizon3.ai/attack-research/disclosures/unsafe-at-any-speed-abusing-python-exec-for-unauth-rce-in-langflow-ai/
  • New CVE Received by [email protected]

    Apr. 07, 2025

    Action Type Old Value New Value
    Added Description Langflow versions prior to 1.3.0 are susceptible to code injection in the /api/v1/validate/code endpoint. A remote and unauthenticated attacker can send crafted HTTP requests to execute arbitrary code.
    Added CVSS V3.1 AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
    Added CWE CWE-306
    Added Reference https://github.com/langflow-ai/langflow/pull/6911
    Added Reference https://github.com/langflow-ai/langflow/releases/tag/1.3.0
EPSS is a daily estimate of the probability of exploitation activity being observed over the next 30 days. Following chart shows the EPSS score history of the vulnerability.
CWE - Common Weakness Enumeration

While CVE identifies specific instances of vulnerabilities, CWE categorizes the common flaws or weaknesses that can lead to vulnerabilities. CVE-2025-3248 is associated with the following CWEs:

CVSS31 - Vulnerability Scoring System
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
© cvefeed.io
Latest DB Update: Jul. 02, 2025 23:50