Code Injection Vulnerability in Langflow by Langflow-AI
CVE-2026-51886

Currently unrated

Key Information:

Status
Vendor
CVE Published:
1 October 2026

What is CVE-2026-51886?

A serious code injection vulnerability has been identified in Langflow-AI's Langflow version 1.9.3. The issue arises from the '/api/v1/validate/code' endpoint, which accepts unvalidated Python source code from authenticated users. This lack of proper security controls allows an authenticated attacker to send malicious code that is executed on the server, leading to arbitrary code execution. The vulnerability exists in the method located at src/backend/base/langflow/api/v1/validate.py:validate-post_validate_code-a-real-authenticated-http-post-to-api-v1. Ensuring code execution is appropriately validated is crucial to prevent unauthorized operations.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.