CVE-2024-48061: Langflow
Critical severity, CVSS 9.8. EPSS: 1.5% chance of exploitation in the next 30 days.
langflow <=1.0.18 is vulnerable to Remote Code Execution (RCE) as any component provided the code functionality and the components run on the local machine rather than in a sandbox.
Affected products
- Langflow Langflow: up to and including 1.0.18
Published 2024-11-04. Last modified 2026-06-17.