HIGHVulnerability
Verified
Global
CISA KEV: Langflow Langflow — Langflow Inclusion of Functionality from Untrusted Control Sphere Vulnerability
·Source: CISA KEV
Updated:
Executive Summary
Langflow contains an inclusion of functionality from untrusted control sphere vulnerability that allows remote attackers to execute arbitrary code on affected installations.
Analysis
Langflow contains an inclusion of functionality from untrusted control sphere vulnerability that allows remote attackers to execute arbitrary code on affected installations. Added to CISA Known Exploited Vulnerabilities catalog on 2026-07-21. Remediation due: 2026-07-24.