CVE-2026-8635

CRITICAL

IBM Langflow OSS - Arbitrary Code Execution in Python Interpreter Component

Title source: rule
STIX 2.1

Description

IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated users to escalate privileges to superuser by directly manipulating the database, execute arbitrary system commands, and achieve full system compromise with Langflow service permissions.

References (1)

Core 1
Core References
Vendor Advisory vendor-advisory patch
https://www.ibm.com/support/pages/node/7278925

Scores

CVSS v3 9.9
EPSS 0.0030
EPSS Percentile 22.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-94
Status published
Products (2)
IBM/Langflow OSS 1.0.0 - 1.10.0
langflow/langflow 1.0.0 - 1.10.1
Published Jul 17, 2026
Tracked Since Jul 18, 2026