CRITICALVulnerability
Verified
Global

NVD CRITICAL: CVE-2026-7524 — IBM Langflow OSS 1.0.0 through 1.9.1 could allow remote code execution due to im...

·Source: NIST NVD

Updated:

Executive Summary

IBM Langflow OSS 1.0.0 through 1.9.1 could allow remote code execution due to improper validation of symbolic links during archive extraction.

Analysis

IBM Langflow OSS 1.0.0 through 1.9.1 could allow remote code execution due to improper validation of symbolic links during archive extraction. CVSS Score: 9.8. Published: 2026-05-27T14:17:35.443.

Indicators of Compromise (1)

CVE (1)
CVE-2026-7524
Source Attribution

Originally published by NIST NVD on May 27, 2026. Verified by: NIST.

Related Threats