ThreatCluster

Multiple Remote Code Execution Vulnerabilities in Veeam and Langflow Detected

First seen 11 May 2026, 16:57 UTC Advisories.Checkpointcve.mitre.orgmsrc.microsoft.com 93% similarity 72

Article Content

Browse articles
ThreatCluster

Two critical remote code execution vulnerabilities have been identified in Veeam Backup and Replication (CVE-2025-23121) and Langflow (CVE-2026-0769). The Veeam vulnerability, published on June 18, 2025, allows attackers to exploit the system if not patched. The Langflow vulnerability was published on January 23, 2026, and similarly poses a significant risk. Both vulnerabilities require users to update their Security Gateway products to the latest IPS updates to activate protections. The attack vectors include web server enforcement violations for Veeam and application intelligence for Langflow. Security professionals are advised to implement the necessary updates immediately to mitigate risks. The advisories emphasize the importance of monitoring logs for specific attack names related to these vulnerabilities. Current status indicates that protections are available but require immediate action from affected organizations.

Key Points: • CVE-2025-23121 in Veeam and CVE-2026-0769 in Langflow are critical RCE vulnerabilities. • Immediate updates to Security Gateway products are required to activate protections. • Logs should be monitored for specific attack names related to these vulnerabilities.

ThreatCluster AI

Timeline

2025-06-18
CVE-2025-23121 published
A remote code execution vulnerability in Veeam Backup and Replication was disclosed, affecting multiple versions.
Advisories.Checkpoint
2026-01-23
CVE-2026-0769 published
Langflow's remote code execution vulnerability was published, posing risks to its users.
Advisories.Checkpoint
2026-05-11
Advisory issued for Veeam and Langflow vulnerabilities
Check Point Software issued advisories detailing the vulnerabilities and urging immediate updates to Security Gateway products.
Advisories.Checkpoint

Community

Browse all →