CVE-2026-105741

LOWCVSS 7.1 · HIGH

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Langflow is a tool for building and deploying AI-powered agents and workflows. From 1.5.0 until 1.10.3, an IP spoofing vulnerability in the Model Context Protocol (MCP) configuration installation endpoint (POST /api/v1/mcp/project/{project_id}/install) allowed authenticated remote attackers to bypass the "local-only" access restriction. By sending a spoofed X-Forwarded-For: 127.0.0.1 header, an attacker could make the server treat the request as originating from localhost, letting them write/overwrite an MCP client configuration file on the server's filesystem. This vulnerability is fixed in 1.10.3.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-290CWE-345

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • 2 total mentions across 1 day

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-10-06: 210-06
Referenced assets2 URLs
Full discourse2 posts
  • Hephaestvs@Vulcanux_

    csirt_it: ‼️ #PoC #Langflow: disponibili Proof of Concept per le CVE-2026-105741, CVE-2026-105740, CVE-2026-105699 e CVE-2026-105697 Rischio: 🔴 Tra le tipologie: 🔸 Remote Code Execution 🔸 Security Feature Bypass 🔗 https://www.acn.gov.it/portale/w/langflow-disponibili-poc-per-lo-sfruttamento-di-4-vulnerabilita ⚠️ Impor… https://t.co/JvPD3v63dL

    0000011
    643 followersView on X
  • CVE@CVEnew

    CVE-2026-105741 Langflow is a tool for building and deploying AI-powered agents and workflows. From 1.5.0 until 1.10.3, an IP spoofing vulnerability in the Model Context Protocol (… https://www.cve.org/CVERecord?id=CVE-2026-105741

    00000964
    58.1K followersView on X

Explore more