CyberRota Analysis
AI-GeneratedIBM Langflow OSS versions 1.0.0 to 1.11.5 are vulnerable to remote code execution due to an unguarded eval() function that processes attacker-controlled input. This flaw allows authenticated attackers to execute arbitrary code on the affected systems, posing a significant security risk. Organizations using these versions should prioritize patching or mitigating this vulnerability to prevent potential exploitation.
CVE
CVE-2026-78571
Severity
HIGH
CVSS
8.8
EPSS
0.54%
Original NVD Description
IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execute arbitrary code due to an unguarded eval() call on attacker-controlled input.