IBM has disclosed multiple vulnerabilities affecting Langflow OSS, an open-source framework used to build and orchestrate AI and large-language-model workflows. The flaws span arbitrary code execution, sandbox escape, improper access control, path traversal, sensitive information exposure, credential protection, and denial-of-service conditions. Successful exploitation could allow attackers to execute malicious code or commands, access restricted files and secrets, manipulate application data, or disrupt services. The affected versions are Langflow OSS 1.0.0 through 1.12.2, making timely remediation important for organizations operating exposed or privileged Langflow deployments. Several high-severity vulnerabilities enable arbitrary code execution. CVE-2026-104334 is a critical code-generation flaw rated CVSS 9.8 and can permit remote unauthenticated attackers to execute arbitrary code. CVE-2026-97676 and CVE-2026-97655 enable code execution through sandbox-escape and incomplete security-scanner blocklist weaknesses, respectively. CVE-2026-97678, CVE-2026-97673, CVE-2026-97679, CVE-2026-97674, CVE-2026-88962, CVE-2026-93674, CVE-2026-93443, CVE-2026-93445, CVE-2026-93449, and CVE-2026-104335 also involve code injection, improper input validation, unsafe command handling, or inadequate access controls. Additional vulnerabilities expose sensitive information or enable unauthorized manipulation. CVE-2026-97677 and CVE-2026-103360 involve path traversal and can expose or overwrite files accessible to the service. CVE-2026-101329 and CVE-2026-97680 involve improper access controls affecting sensitive information and cached results. CVE-2026-101331 exposes insufficiently protected credentials, while CVE-2026-93678 and CVE-2026-93677 permit unauthorized information access. CVE-2026-93447 involves unsafe deserialization, and CVE-2026-93679 can cause denial of service through uncontrolled resource consumption during ZIP extraction. Organizations should upgrade Langflow OSS to version 1.12.3, which IBM identifies as the remediation release. IBM lists no workaround, so patching should be prioritized, particularly for Internet-accessible deployments. Administrators should also review authentication and application logs for suspicious activity, inspect filesystem changes, rotate potentially exposed credentials and secrets, restrict unnecessary network exposure, and apply least-privilege permissions to Langflow service accounts. Following remediation, organizations should validate that vulnerable versions are no longer deployed and continue monitoring for exploitation attempts targeting Langflow environments.
Italy’s Data Protection Authority (GPDP) has fined IQVIA €7 million ($7.8 million) over inadequate health-data protection practices that potentially placed the information of a...
Japanese publishing giant Nikkei has disclosed two recent cyber incidents in which attackers compromised employee email accounts and used them to expose information and distribute ...
A newly demonstrated security flaw in LibreOffice and Apache OpenOffice shows how seemingly legitimate spreadsheet features can be combined to execute malicious code without the us...