{"data":{"id":"1d6f491e-a295-4bae-8c90-4b4ffd94153e","title":"CVE-2026-105740: Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.0, any authenticated Langflo","summary":"Langflow, a tool for building AI-powered agents and workflows, had a critical vulnerability before version 1.9.0 where authenticated users could execute arbitrary commands on the server by adding an MCP server with Stdio transport, since user-supplied commands were passed directly to bash without any validation or security restrictions. The vulnerability also allowed attackers to inject arbitrary environment variables like LD_PRELOAD, which could further compromise the system.","solution":"This vulnerability is fixed in 1.9.0. Upgrade Langflow to version 1.9.0 or later.","labels":["security"],"sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-105740","publishedAt":"2026-10-05T21:16:35.567Z","cveId":"CVE-2026-105740","cweIds":["CWE-78"],"cvssScore":"9.9","cvssSeverity":"critical","severity":"critical","attackType":[],"issueType":"vulnerability","affectedPackages":null,"affectedVendors":["LangChain"],"affectedVendorsRaw":["Langflow"],"classifierModel":"claude-haiku-4-5-20251001","classifierPromptVersion":"v3","cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H","attackVector":"network","attackComplexity":"low","privilegesRequired":"low","userInteraction":"none","exploitMaturity":"unknown","epssScore":0,"patchAvailable":null,"disclosureDate":"2026-10-05T21:16:35.567Z","capecIds":["CAPEC-88"],"crossRefCount":0,"attackSophistication":"trivial","impactType":["integrity","confidentiality","availability"],"aiComponentTargeted":"agent","llmSpecific":false,"classifierConfidence":0.95,"researchCategory":null,"atlasIds":null}}