Critical RCE Flaw in IBM Langflow Under Active Exploitation

Critical RCE Flaw in IBM Langflow Under Active Exploitation

First seen 5 Aug 2026, 22:22 UTC TheregisterFeeds.4Sysopswww.cve.org 88% similarity 72.9

Article Content

Browse articles
ThreatCluster

A critical remote code execution (RCE) vulnerability, CVE-2026-9198, in IBM's Langflow platform is currently being exploited. The flaw affects default deployments of Langflow OSS versions 1.0.0 to 1.10.0, allowing unauthenticated attackers to execute arbitrary code remotely. The Cybersecurity and Infrastructure Security Agency (CISA) added this vulnerability to its Known Exploited Vulnerabilities catalog on August 4, 2026, after confirming active exploitation. IBM recommends upgrading to version 1.10.1 or later, with version 1.11.2 being the latest release. The vulnerability arises from an auto-login endpoint that grants superuser tokens and a code validation endpoint that executes any Python code. Organizations using default configurations are particularly at risk. The CVE was published on July 17, 2026, and a public proof of concept (PoC) appeared on July 24, 2026.

Key Points: • CVE-2026-9198 is a critical RCE vulnerability in IBM's Langflow platform. • The flaw affects default deployments and allows unauthenticated remote code execution. • CISA added the CVE to its Known Exploited Vulnerabilities catalog on August 4, 2026.

ThreatCluster AI How this analysis works

Timeline

2026-07-17
CVE-2026-9198 published
IBM disclosed a critical remote code execution flaw in Langflow affecting versions 1.0.0 to 1.10.0.
Theregister
2026-07-24
First public PoC released
A proof of concept demonstrating the exploitation of CVE-2026-9198 was made public.
Theregister
2026-08-04
CISA adds CVE-2026-9198 to KEV
CISA confirmed active exploitation of the vulnerability and added it to its Known Exploited Vulnerabilities catalog.
Feeds.4Sysops
2026-08-05
IBM urges immediate patching
IBM advised users to upgrade Langflow OSS to version 1.10.1 or later to mitigate the vulnerability.
Theregister

Community

Browse all →