CVE-2026-48520Disclosure(langflow / langflow)

LOWCVSS 6.1 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch langflow langflow systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.10.0, the "Shareable Playground" (or "Public Flows" in code) contains a potential arbitrary file-read vulnerability, depending on the exact flow configuration used. By making a flow public, public execution of the flow is allowed. The execution request can contain a list of files that gets read by Langflow and fed into the LLM. The files path can be any path supported by the storage - it can be either a local file or S3 path if supported by the local configuration This vulnerability is fixed in 1.10.0.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-73

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • langflow

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 2 signals
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • Peaked 2d ago at 1 mentions (2026-06-15); latest day: 1
  • 3 total mentions across 3 days

Affected systems

Vendors
Products
langflow

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-06-15: 1Mentions · 2026-06-23: 1Mentions · 2026-07-01: 1Patch / Workaround · 2026-07-01: 1Technical Details · 2026-06-15: 1Technical Details · 2026-07-01: 106-1506-2307-01
Signal classification3 categories
Disclosure
133.3%
General
133.3%
Patch
133.3%
Referenced assets2 URLs
Classification over time
DateTotalLabels
2026-06-151
Disclosure1
2026-06-231
General1
2026-07-011
Patch1
Full discourse3 posts
  • Ori@vbCrLf
    Disclosure

    Over the last few months, I researched Langflow, n8n, and Activepieces. The result is 9 zero-days and a BlueHat IL talk 🛠️ 🚨 CVE-2026-7524 (Critical - 9.8) 🚨 CVE-2026-48519 (Critical - 9.6) ⚠️ CVE-2026-7528 (High - 7.1) 🐛 CVE-2026-42228 (Moderate - 6.3) 🐛 CVE-2026-48520 (Moderate - 6.1) 🚨 CVE-not-yet-published (Critical - 9.0) 🚨 CVE-not-yet-published (Critical - 10.0) ⚠️ CVE-not-yet-published (High - 8.6) ⚠️ CVE-not-yet-published (High - 8.3) Thanks to the vendors for the cooperation and fixes. @Oranav and I will be breaking down some of these on stage at BlueHat IL 2026 Registration closes soon. Write-ups will be published after the con. Abstract: https://www.microsoftrnd.co.il/bluehatil/conference/abstracts#collapse-25 @BlueHatIL @msftsecresponse

    Post summary

    The author announces a set of zero-day vulnerabilities across several platforms, lists their CVSS strengths, and notes that vendors have cooperated on fixes, with plans to present detailed write‑ups at a future conference.

    11030468
    43 followersView on X
  • Rubrik Zero Labs@RubrikZeroLabs
    Patch

    Two more: CVE-2026-48520 (CVSS 6.1) and CVE-2026-7528 (CVSS 7.1). All four disclosed and patched Feb–May 2026.

    Post summary

    The post lists two CVEs with CVSS scores and notes that all four vulnerabilities—both mentioned and the previously disclosed ones—were disclosed and patched between February and May 2026.

    1001065
    26 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-48520 Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.10.0, the "Shareable Playground" (or "Public Flows" in code) contains a pote… https://www.cve.org/CVERecord?id=CVE-2026-48520

    Post summary

    The post merely points to a CVE record for Langflow without offering any technical, exploit, or remediation details.

    00000836
    57.7K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Applangflowlangflow---

Explore more