← Back to browse · API

CVE-2026-0770

Severity
CRITICAL
CVSS
9.8
EPSS
0.56267
Risk score
83.89
CISA KEV
Yes
PoC
Yes
Published
2026-07-21
Modified
2026-07-21
First seen
2026-08-05
Aliases
EUVD-2026-4466, GHSA-G22F-V6F7-2HRH, PYSEC-2026-1525
Products
Langflow:Langflow, langflow-ai:langflow 1.4.2, langflow:langflow
Sources
nvd CVE-2026-0770
euvd EUVD-2026-4466
cisa.gov CVE-2026-0770
packetstorm e1b15243aca2ad53b47ce4cf|CVE-2026-0770

Description

Langflow contains an inclusion of functionality from untrusted control sphere vulnerability that allows remote attackers to execute arbitrary code on affected installations.

References