CVE-2026-97674: Langflow OSS is affected by multiple vulnerabilities
IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to execute arbitrary OS commands due to improper neutralization of special elements used in an OS command ('Code Injection'), aka improper control of code generation.
Other sources
Langflow OSS could allow a remote authenticated attacker to execute arbitrary OS commands due to improper neutralization of special elements used in an OS command ('Code Injection'), aka improper control of code generation.
— IBM
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Langflow OSSto a version that resolves this vulnerability.Fixed in 1.12.3
Event History
Frequently Asked Questions
Who can exploit this issue?
A remote attacker must be authenticated to exploit it. No user interaction is required, and the attack can be performed over the network.
What is the potential impact after exploitation?
An authenticated attacker could execute arbitrary operating-system commands. The reported impact includes high confidentiality and integrity impact, with no availability impact indicated.
Which versions should be treated as affected?
IBM Langflow OSS versions 1.0.0 through 1.12.2 are identified as affected.