SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-78571

HIGH · CVSS 8.8 EPSS 0.54%

Source: NVD + CISA KEV + EPSS · Published 2026-09-10 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

IBM Langflow OSS versions 1.0.0 to 1.11.5 are vulnerable to remote code execution due to an unguarded eval() function that processes attacker-controlled input. This flaw allows authenticated attackers to execute arbitrary code on the affected systems, posing a significant security risk. Organizations using these versions should prioritize patching or mitigating this vulnerability to prevent potential exploitation.

CVE
CVE-2026-78571
Severity
HIGH
CVSS
8.8
EPSS
0.54%

Original NVD Description

IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execute arbitrary code due to an unguarded eval() call on attacker-controlled input.