← signals
2026-07-23·LANGFLOW·security risk
highdown

Langflow, an open-source tool for building AI workflows, faces a severe security crisis with multiple critical...

Langflow, an open-source tool for building AI workflows, faces a severe security crisis with multiple critical vulnerabilities disclosed.

window 15devidence 23confidence score 100

confidence score

Strong evidence: 3 independent source classes support this read.

100
high confidence3 independent source classesofficialotherpasses publish gate

signal brief

Langflow, an open-source tool for building AI workflows, faces a severe security crisis with multiple critical vulnerabilities disclosed. CISA added CVE-2026-0770 to its Known Exploited Vulnerabilities catalog on July 21, 2026 (CISA KEV), an RCE vulnerability with a due date of July 24. On July 7-13, 2026, OSV.dev published 11 advisories (PYSEC-2026-1521 through 1525, 242-244, 376-379, 2565-2569) covering RCE via validate_code(), path traversal, IDOR, missing authentication, and cleartext storage (OSV advisory list). Notably, CVE-2026-0770 is the same vulnerability in the KEV.

What the sources said

  • CISA KEV: "Langflow contains an inclusion of functionality from untrusted control sphere vulnerability that allows remote attackers to execute arbitrary code." (source)
  • OSV advisory PYSEC-2026-1525: "Langflow affected by Remote Code Execution via validate_code() exec()." (source)
  • OSV advisory PYSEC-2026-242: "any authenticated user can read, modify, rename, or permanently delete another user's data by supplying the target's resource ID." (source)

The rapid disclosure of widespread vulnerabilities erodes trust in Langflow's security posture and may drive developers to alternative frameworks.

source data used

Decision support, not stock advice. This signal is research with cited evidence — not a recommendation to buy, sell, or hold any security.