Known CVE
Langflow <= 1.0.12 - Remote Code Execution
Langflow 0.6.19 contains a remote code execution caused by accepting untrusted Python scripts in the /api/v1/custom_component endpoint, letting remote attackers execute arbitrary code, exploit requires access to the endpoint and untrusted script input.
CVE-2024-37014
Critical2024CVSS 9.8CWE-94
cve2024 · langflow · rce · oast · vkev
Verified scans run this check after you prove you own the site.
All known CVEsView the checks catalogNational Vulnerability Database
Scan a website