CVE-2026-81211: IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execute arbitrary Python code due t
Summary
IBM Langflow OSS (open-source software) versions 1.0.0 through 1.11.5 has a security flaw where a logged-in attacker could run malicious Python code (a programming language) by exploiting weak permission checks on custom components stored in workflows. This happens because the software doesn't properly verify that users are allowed to use certain customizable tools before executing them.
Vulnerability Details
8.8(high)
EPSS: 0.0%
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
network
low
low
none
September 10, 2026
Classification
Taxonomy References
Affected Vendors
Related Issues
CVE-2026-63086: text-generation-inference through 3.3.7 contains a server-side request forgery (SSRF) vulnerability in the OpenAI-compat
CVE-2026-34371: LibreChat is a ChatGPT clone with additional features. Prior to 0.8.4, LibreChat trusts the name field returned by the e
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-81211
First tracked: September 10, 2026 at 08:08 PM
Classified by LLM (prompt v3) · confidence: 95%