CISA Flags Active Exploitation of Critical Langflow RCE Flaw CVE-2026-9198
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) added CVE-2026-9198, a critical remote code execution vulnerability in Langflow, to its Known Exploited Vulnerabilities catalog on August 5, 2026. The flaw affects Langflow OSS versions 1.0.0 through 1.10.0 and allows attackers to obtain a superuser bearer token without any authentication via the default-enabled auto-login endpoint. Using that token, an attacker can submit a malicious Python function to the code validation endpoint, which triggers an exec() call and executes arbitrary OS commands with Langflow process privileges. Potential consequences include theft of LLM provider API keys and database credentials, lateral movement within internal networks, and full host compromise if the container runs as root. Langflow users are advised to upgrade immediately to version 1.10.1 or later and restrict network access to the affected endpoints.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.
Discussion (0)
Log in to join the discussion and vote.
Log in