VENDOR

Langflow vulnerabilities: CVEs, exploitation and patches

Every Langflow CVE reviewed by Diras Labs analysts, newest first, with exploitation status and fixes.

  1. CVE-2026-55255
    Langflow authorization bypass lets authenticated users run other users' flows Langflow Langflow ·
    • CISA KEV
    • EXPLOITED
    • PoC PUBLIC
    HIGH 8.4
  2. CVE-2026-0770
    Langflow exec_globals pre-auth remote code execution Langflow Langflow ·
    • CISA KEV
    • EXPLOITED
    • PoC PUBLIC
    CRITICAL 9.8
2 CVEs · page 1 of 1