Code Injection Vulnerability in IBM Langflow OSS
CVE-2026-97679
8.8HIGH
What is CVE-2026-97679?
A vulnerability in IBM Langflow OSS versions 1.0.0 to 1.12.2 may allow remote authenticated attackers to execute arbitrary code. This arises from improper validation of input that allows the execution of special elements in OS commands. It is essential for users to apply the latest patches to safeguard against this vulnerability.
Affected Version(s)
Langflow OSS 1.0.0 <= 1.12.2