在 Langflow 1.12.0 之前版本的 1.0.16 以及 1.12.0 之前版本的 0.0.94 中,存在一个在 schema.py 文件中的不安全的 eval() 漏洞。该漏洞允许经过身份验证的攻击者通过在组件输入选项列表中插入具有恶意 __repr__ 方法的 Python 对象,从而实现远程代码执行。 当组件通过 ComponentToolkit.get_tools() 被转换为 LangChain 工具时(包括通过 API 保存自定义组件的过程中),该 eval() 漏洞会被触发。具体来说,选项会
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| langflow-ai | langflow | 1.0.16< 1.12.0 |
affected |
0.0.94< 1.12.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| langflow-ai | langflow | 1.0.16 ~ 1.12.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet