{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/langflow-oss-1.0.0---1.12.2/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:ibm:langflow_oss:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":8.8,"id":"CVE-2026-104335"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["Langflow OSS (1.0.0 through 1.12.2)","Langflow OSS (1.0.0 - 1.12.2)"],"_cs_severities":["high"],"_cs_tags":["vulnerability","rce","authentication","remote-code-execution","deserialization","ibm","langflow"],"_cs_type":"advisory","_cs_vendors":["IBM"],"content_html":"\u003cp\u003eIBM Langflow OSS, an open-source visual framework for building multi-agent AI applications, is affected by a critical vulnerability, CVE-2026-104335. This flaw exists in versions 1.0.0 through 1.12.2 and stems from improper access control mechanisms within the application. An attacker with authenticated access can leverage this vulnerability to execute arbitrary code on the underlying host system. Given that Langflow environments often handle sensitive API keys, model configurations, and data processing tasks, this vulnerability represents a significant risk for unauthorized access, lateral movement, and data exfiltration. Organizations deploying IBM Langflow OSS should prioritize upgrading to a patched version once available and enforce strict access controls on the management interface.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of this vulnerability allows an authenticated attacker to bypass intended access restrictions and achieve arbitrary code execution. This could result in a complete compromise of the Langflow application instance, unauthorized access to connected AI services or databases, and the potential for exfiltration of intellectual property or sensitive model data.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritize the upgrade of all IBM Langflow OSS instances to a version later than 1.12.2. Monitor administrative access logs for unusual login patterns or actions performed by users with elevated privileges. Given the lack of specific exploitation telemetry, focus on identifying unauthorized attempts to access or modify workflow configurations within the Langflow interface.\u003c/p\u003e\n","date_modified":"2026-10-07T02:59:30Z","date_published":"2026-10-07T00:58:17Z","id":"https://feed.craftedsignal.io/briefs/2026-10-104335/","summary":"IBM Langflow OSS versions 1.0.0 through 1.12.2 contain an improper access control vulnerability (CVE-2026-104335) that allows an authenticated remote attacker to execute arbitrary code.","title":"Improper Access Control in IBM Langflow OSS Leads to Remote Code Execution","url":"https://feed.craftedsignal.io/briefs/2026-10-104335/"}],"language":"en","title":"CraftedSignal Threat Feed - Langflow OSS (1.0.0 - 1.12.2)","version":"https://jsonfeed.org/version/1.1"}