Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Langflow through 0.6.19 allows remote code execution if untrusted users are able to reach the "POST /api/v1/custom_component" endpoint and provide a Python script.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Langflow 安全漏洞
Vulnerability Description
Langflow是Langflow开源的一个用于构建多代理和 RAG 应用程序的可视化框架。 Langflow 0.6.19版本存在安全漏洞,该漏洞源于如果不受信任的用户能够到达 POST /api/v1/custom_component 端点并提供 Python 脚本,则 Langflow允许远程代码执行。
CVSS Information
N/A
Vulnerability Type
N/A