Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.8
CVE-2026-19286: IBM Langflow OSS could let attackers run code remotely
CVE-2026-19286 · published 6 days ago
Summary
Versions 1.0.0 through 1.11.1 of IBM Langflow OSS do not properly restrict access to a public interface that allows one system to talk to another. This gap could let a remote attacker send specially crafted requests and cause the software to run any code they choose. Update to the latest version or apply the vendor's recommended patch as soon as possible.
What to do
- Update langflow langflow to version 1.11.2 or later.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| ibm | langflow oss | <= 1.11.1 |
| langflow | langflow |
>= 1.0.0, < 1.11.2 cpe:2.3:a:langflow:langflow:*:*:*:*:*:*:*:* |
Original advisory text
IBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote attacker to execute arbitrary code due to improper enforcement of security restrictions on the A2A public endpoint.
IBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote attacker to execute arbitrary code due to improper enforcement of security restrictions on the A2A public endpoint.
Severity
9.8
Critical
CVSS 3.1: 9.8 (NVD)
Exploitation
EPSS <1%
Type
CWE-94Code Injection
Timeline
Published28 Aug 2026
Updated2 Sep 2026
First seen28 Aug 2026
Monitor software like this
Free during beta