Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Langflow

First CVE: Jun 10, 2024Active for: 2 yearsTotal CVEs: 80
88.7
VTI Score
TOP TARGET

Langflow is a low-volume but prominently tracked open-source platform for building and deploying large-language-model applications, where its concentrated vulnerability footprint reflects the framework's exposure to code composition, file handling, and access-control operations. Vulnerabilities affecting the vendor skew strongly toward critical-severity outcomes and frequently acquire public exploit tooling, with a moderate tendency toward confirmed in-the-wild exploitation and CISA cataloging. The exposure recurs across authentication and authorization boundaries—including code injection, path traversal, authorization bypass through user-controlled keys, and missing authentication on critical functions—reflecting the inherent risks of a system that orchestrates dynamic LLM workflows and file I/O at scale. Defenders deploying Langflow should prioritize patching and restrict instance exposure; live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
80
Total CVEs
More Total CVEs than 99% of tracked vendors
8.9
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 99% of tracked vendors
8.6
Avg CVSS Score
Higher Avg CVSS Score than 82% of tracked vendors
6.3%
In CISA KEV
Higher KEV Rate than 100% of tracked vendors

Trends Over Time

The number and severity of CVEs published that impact products developed by Langflow over time

Volume of CVEsAvg CVSS Base Score
First CVE
Jun 10, 2024
2 years ago
Most Recent CVE
Jul 17, 2026
7 days ago

Products(3 total)

Top CVEs

Signals from CVEs in this vendor scope (80 CVEs).

80 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2026-33017CRITICAL
Langflow is a tool for building and deploying AI-powered agents and workflows. In versions prior to 1.9.0, the POST /api/v1/build_public_tmp/{flow_id}/flow endpoint allows building
Mar 20, 20269.899YESYES
CVE-2025-3248CRITICAL
Langflow versions prior to 1.3.0 are susceptible to code injection in the /api/v1/validate/code endpoint. A remote and unauthenticated attacker can send crafted HTTP requests to e
Apr 7, 20259.899YESYES
CVE-2026-0770CRITICAL
Langflow exec_globals Inclusion of Functionality from Untrusted Control Sphere Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary
Jan 23, 20269.897YESYES
CVE-2025-34291HIGH
Langflow versions up to and including 1.6.9 contain a chained vulnerability that enables account takeover and remote code execution. An overly permissive CORS configuration (allow_
Dec 5, 20258.897YESYES
CVE-2026-55255HIGH
Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.9.1, an Insecure Direct Object Reference (IDOR) vulnerability in /api/v1/responses endpoin
Jun 23, 20268.481YESNO
CVE-2026-27966CRITICAL
Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to version 1.8.0, the CSV Agent node in Langflow hardcodes `allow_dangerous_code=True`, which a
Feb 26, 20269.866NOYES
CVE-2026-21445CRITICAL
Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to version 1.7.0.dev45, multiple critical API endpoints in Langflow are missing authentication
Jan 2, 20269.155NOYES
CVE-2026-0769CRITICAL
Langflow eval_custom_component_code Eval Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installatio
Jan 23, 20269.849NONO
CVE-2026-33497HIGH
Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to version 1.7.1, in the download_profile_picture function of the /profile_pictures/{folder_nam
Mar 24, 20267.547NOYES
CVE-2026-9135CRITICAL
IBM Langflow OSS 1.0.0 through 1.10.0 Langflow versions up to 1.9.2 (commit 94981c443d4918517b9e8163d70fc598dc33a32d) contain a code injection vulnerability in the Policies compone
Jul 17, 20269.943NONO
View all 80 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products80 CVEs
16%
38%
46%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local1 (1.3%)
Network78 (97.5%)
Unknown0 (0.0%)
Physical1 (1.3%)
Adjacent Network0 (0.0%)
Attack Complexity
Low76 (95.0%)
High4 (5.0%)
Unknown0 (0.0%)
User Interaction
None75 (93.8%)
Unknown0 (0.0%)
Required5 (6.3%)
Privileges Required
Low42 (52.5%)
High0 (0.0%)
None38 (47.5%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (80 CVEs).

CISA KEV
5 CVEs
6.2% of CVEs· 100th percentile
Metasploit
2 CVEs
2.5% of CVEs· 97th percentile
Nuclei
6 CVEs
7.5% of CVEs· 96th percentile
ExploitDB
3 CVEs
3.8% of CVEs· 75th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Langflow.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Langflow — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Langflow's Products

View all 7 CNAs →

Top CWEs