Known Vulnerabilities for Langflow OSS by IBM
Listed below are 10 of the newest known vulnerabilities associated with "Langflow OSS" by "IBM".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-34046 json | Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to version 1.5.1, the `_read_flow` helpe... | Not Provided | 2026-03-27 | 2026-04-01 |
| CVE-2026-33873 json | Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to version 1.9.0, the Agentic Assistant ... | Not Provided | 2026-03-27 | 2026-04-02 |
| CVE-2026-6600 json | A flaw has been found in langflow-ai langflow up to 1.8.3. This affects an unknown function of the file src/frontend/src/moda... | Not Provided | 2026-04-20 | 2026-04-20 |
| CVE-2026-6599 json | A vulnerability was detected in langflow-ai langflow up to 1.8.3. The impacted element is the function get_client_ip/install_... | Not Provided | 2026-04-20 | 2026-04-20 |
| CVE-2026-6598 json | A security vulnerability has been detected in langflow-ai langflow up to 1.8.3. The affected element is the function create_p... | Not Provided | 2026-04-20 | 2026-04-20 |
| CVE-2026-6597 json | A weakness has been identified in langflow-ai langflow up to 1.8.3. Impacted is the function remove_api_keys/has_api_terms of... | Not Provided | 2026-04-20 | 2026-04-20 |
| CVE-2026-6596 json | A security flaw has been discovered in langflow-ai langflow up to 1.1.0. This issue affects the function create_upload_file o... | Not Provided | 2026-04-20 | 2026-04-20 |
| CVE-2026-6543 json | IBM Langflow Desktop 1.0.0 through 1.8.4 Langflow allows an attacker to execute arbitrary commands with the privileges of the... | Not Provided | 2026-04-30 | 2026-04-30 |
| CVE-2026-6542 json | IBM Langflow OSS 1.0.0 through 1.8.4 could allow any user to supply a flow_id to read transaction logs and vertex build data ... | Not Provided | 2026-04-30 | 2026-04-30 |
| CVE-2026-4503 json | IBM Langflow Desktop 1.0.0 through 1.8.4 Langflow could allow an unauthenticated user to view other users' images due to an i... | Not Provided | 2026-04-30 | 2026-04-30 |