Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
8.8 HIGH
CVE-2026-17633 — Langflow OSS is affected by arbitrary code execution in component generation, validation,…

IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary code due to code injection.

langflow langflow_oss | Remote | Injection
Aug 05, 2026 Aug 06, 2026
Aug 05, 2026
Aug 06, 2026
8.8 HIGH
CVE-2026-17632 — Langflow OSS is affected by arbitrary code execution in component generation, validation,…

IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary code due to improper validation of Python code during AST-based security scanning.

langflow langflow_oss | Remote | Injection
Aug 05, 2026 Aug 06, 2026
Aug 05, 2026
Aug 06, 2026
8.8 HIGH
CVE-2026-17624 — Langflow OSS is affected by arbitrary code execution in component generation, validation,…

IBM Langflow OSS 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, 1.0.0 through 1.10.3, and 1.0.0 through 1.10.3 could allow a remote auth…

langflow langflow_oss | Remote | Injection
Aug 05, 2026 Aug 06, 2026
Aug 05, 2026
Aug 06, 2026
8.1 HIGH
CVE-2026-10547 — Langflow OSS is affected by arbitrary code execution in custom component validation and t…

IBM Langflow OSS 1.0.0 through 1.10.3 does not properly validate ownership in the deprecated POST /api/v1/build/{flow_id}/vertices endpoint, allowing an authenticated user to inject arbitrary graph d…

langflow langflow_oss | Remote | Authorization
Aug 05, 2026 Aug 06, 2026
Aug 05, 2026
Aug 06, 2026
Showing 20 of 12784 Results