Langflow是Langflow团队开源的一个用于构建多代理和 RAG 应用程序的可视化框架。 Langflow 1.7.0之前版本存在会话机制问题漏洞,该漏洞源于注销按钮未清除会话,可能导致之前用户保持登录状态。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| langflow-ai | langflow | < 1.7.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| langflow-ai | langflow | < 1.7.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-48519 | 9.6 CRITICAL | Langflow: Unauthenticated RCE in Shareable Playgrounds |
| CVE-2026-55447 | 9.6 CRITICAL | Langflow: BaseFileComponent-based nodes arbitrary file read with RCE exploit |
| CVE-2026-55450 | 9.3 CRITICAL | Langflow: Unauthenticated file upload leads to DoS (space exhaustion) and information leak |
| CVE-2026-33760 | 8.8 HIGH | Langflow: IDOR/BOLA in Monitor API — Missing Ownership Enforcement on 7 Endpoints |
| CVE-2026-55255 | 8.4 HIGH | Langflow: IDOR Vulnerability in `/api/v1/responses` Endpoint Allows Authenticated Attacker |
| CVE-2026-55446 | 7.5 HIGH | Langflow: Unauthenticated DoS through multipart form boundary file upload |
| CVE-2026-42867 | 6.5 MEDIUM | Langflow: Path Traversal in Knowledge Bases API via Creation Endpoint |
| CVE-2026-48520 | 6.1 MEDIUM | Langflow: Unauthenticated Shareable Playground arbitrary local or S3 file read |
No comments yet