CVE-2026-0768

CRITICAL LAB

Langflow - Code Injection

Title source: llm

Description

Langflow code Code Injection Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Langflow. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of the code parameter provided to the validate endpoint. The issue results from the lack of proper validation of a user-supplied string before using it to execute Python code. An attacker can leverage this vulnerability to execute code in the context of root. . Was ZDI-CAN-27322.

Exploits (1)

github WORKING POC 1 stars
by exploitintel · pythonpoc
https://github.com/exploitintel/eip-pocs-and-cves/tree/main/CVE-2026-0768

Scores

CVSS v3 9.8
EPSS 0.0187
EPSS Percentile 83.2%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Lab Environment

EIP LAB Lab screenshot
vulnerable docker pull ghcr.io/exploitintel/cve-2026-0768-vulnerable:latest
COMMUNITY
docker pull langflowai/langflow:v1.1.1

Details

CWE
CWE-94
Status published
Products (1)
langflow/langflow 1.4.2
Published Jan 23, 2026
Tracked Since Feb 18, 2026