← לוח פגיעויות

CVE-2026-10561

קריטית 10.0

תיאור (מקור, אנגלית)

IBM Langflow OSS 1.0.0 through 1.9.3 has an vulnerability due to an improper isolation of Python execution combined with an authentication bypass that allows an unauthenticated attacker to execute arbitrary code on the host system, resulting in complete compromise

מדדים

CVSS 3.1
10.0 (CRITICAL) מקור הציון: CNA CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
EPSS — סבירות ניצול
1% (אחוזון 100) נכון ל-13/8/2026
CWE
CWE-94

מוצרים מושפעים

langflow: langflow

קישורים