Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-51888

Quick assessment

Affected
n/a n/a
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

langflow-ai langflow 1.8.4 版本存在目录遍历漏洞。该漏洞的影响为:攻击者能够在预期工作空间或存储边界之外任意写入文件。受影响的组件为: 中的 (即通过 HTTP POST 请求创建知识库的接口)。攻击向量为:攻击面包括通过 HTTP 或浏览器支持的公共服务路径。一个面向公网的文件上传或 HTTP 路由处理程序,会将攻击者控制的路径或文件名直接用于主机文件创建,而未实施任何可见的边界限制。¶¶ 在 langflow-ai langflow 1.8.4 及更早版本中发现了一个安全弱点。lang

AI Predicted 8.6 Difficulty: Easy EPSS 0.23% · P13

Affected Version Matrix 1

VendorProduct Version RangeStatus
n/a n/a n/a affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-51888

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
langflow-ai langflow v1.8.4 is affected by: Directory Traversal. The impact is: Arbitrary file write outside the intended workspace or storage boundary.. The component is: src/backend/base/langflow/api/v1/knowledge_bases.py:knowledge_bases-create_knowledge_base-a-live-http-post-to-create-knowledge-base. The attack vector is: Attack surface: HTTP or browser-backed service path. A public-facing upload or HTTP route handler forwards an attacker-controlled path or filename into host file creation without any visible boundary enforcement. ¶¶ A weakness has been identified in langflow-ai langflow up to 1.8.4. langflow contains an absolute path traversal vulnerability in knowledge_bases-create_knowledge_base-a-live-http-post-to-create-knowledge-base (src/backend/base/langflow/api/v1/knowledge_bases.py:51). An attacker can write or overwrite files outside the intended working directory by providing absolute paths in the knowledge base creation endpoint.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
- n/a n/a -

II. Public POCs for CVE-2026-51888

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-51888

请登录查看更多情报信息。

Proof of Concept for CVE-2026-51888 (1)

Same Patch Batch · n/a · 2026-10-01 · 21 CVEs total

CVE-2026-103484 8.8 HIGH pgvector buffer overflow in IVFFlat index build
CVE-2026-103531 5.5 MEDIUM OpenSC card-setcos.c setcos_construct_fci_44 stack-based overflow
CVE-2026-51876 DeepTutor 1.4.0授权绕过漏洞
CVE-2026-51875 Devika v1.0存在路径遍历漏洞
CVE-2026-51892 RagFlow 0.24.0 /v1/document/get/ 接口访问控制错误漏洞
CVE-2026-51896 RagFlow 0.25.3恢复模块越权访问漏洞
CVE-2026-51882 Langchain-Chatchat 0.3.0 文件上传路径穿越漏洞
CVE-2026-51886 LangFlow v1.9.3代码注入漏洞
CVE-2026-51878 DeepTutor 1.4.0 对象标识符授权绕过漏洞
CVE-2026-51873 Devika v1.0目录遍历漏洞
CVE-2026-51881 DeepTutor 1.4.0远程代码注入漏洞
CVE-2026-51879 DeepTutor 1.4.0 认证绕过漏洞
CVE-2026-51897 RAGFlow 0.24.0 get_dataset接口存在命令执行漏洞
CVE-2026-51884 Langchain Chatchat 0.3.1临时文档上传路径遍历漏洞
CVE-2026-51893 RagFlow 0.24.0 越权访问漏洞
CVE-2026-51880 Deeptutor 1.4.0 EditFileTool路径遍历漏洞
CVE-2026-51895 Ragflow 0.24.0及之前版本存在更新元数据不当访问控制漏洞
CVE-2026-51874 Devika v1.0路径穿越漏洞
CVE-2026-51894 RAGFlow 0.24.0 任意文件读取漏洞
CVE-2026-51883 Langchain-Chatchat 0.3.x 知识库创建接口路径穿越漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2026-51888

No comments yet


Leave a comment