Arbitrary Code Execution Vulnerability in IBM Langflow OSS
CVE-2026-78569
8.8HIGH
What is CVE-2026-78569?
IBM Langflow OSS versions 1.0.0 to 1.11.5 contain a vulnerability that allows authenticated attackers to execute arbitrary code. This is due to an incomplete denylist in the security scanner, which may enable unauthorized code execution on the affected systems. Organizations using these versions should consider applying patches or taking protective measures to secure their environments.
Affected Version(s)
Langflow OSS 1.0.0 <= 1.11.5