Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
light_mode
dark_mode
Vulnerabilities
search
All ecosystems
789722
AlmaLinux
5369
Alpaquita
11957
Alpine
4311
Android
3403
Azure Linux
12016
BellSoft Hardened Containers
581
Bitnami
8470
Chainguard
9577
CleanStart
1988
CRAN
14
crates.io
2585
Debian
61020
Echo
7134
GHC
3
GIT
95580
GitHub Actions
54
Go
8450
Hackage
32
Hex
192
Julia
1122
Linux
26184
Mageia
6070
Maven
6752
MinimOS
96114
npm
223123
NuGet
1829
opam
19
openEuler
7401
openSUSE
13678
OSS-Fuzz
3964
Packagist
6744
Pub
11
PyPI
24068
Red Hat
21452
Rocky Linux
3729
Root
17775
RubyGems
4574
SUSE
21767
SwiftURL
59
TuxCare
5651
Ubuntu
58211
VSCode
20
Wolfi
6669
ID
Packages
Summary
Published
arrow_upward
Attributes
CVE-2026-9202
github.com/langflow-ai/langflow
See record for full details
17 Jul
Fix available
Severity - 9.8 (Critical)
CVE-2026-9198
github.com/langflow-ai/langflow
See record for full details
17 Jul
Fix available
Severity - 9.8 (Critical)
PYSEC-2026-2566
PyPI/langflow
Langflow: Path Traversal in Knowledge Bases API via Creation Endpoint
13 Jul
Fix available
Severity - 6.5 (Medium)
PYSEC-2026-2569
PyPI/langflow
Langflow vulnerable to injection
13 Jul
No fix available
Severity - 2.1 (Low)
PYSEC-2026-2568
PyPI/langflow
Langflow: Cleartext Storage of Authentication Settings in Project Creation Endpoint
13 Jul
Fix available
Severity - 2.1 (Low)
PYSEC-2026-2565
PyPI/langflow
Langflow has an Information Leak through Incomplete API Key Redaction
13 Jul
No fix available
Severity - 2.0 (Low)
PYSEC-2026-2572
PyPI/langflow-base
Langflow: DoS Through Lack of File Size Restriction via Deprecated Unauthenticated File Upload API
13 Jul
Fix available
Severity - 5.5 (Medium)
PYSEC-2026-2570
PyPI/langflow-base
Langflow: Authenticated Users Can Read, Modify, and Delete Any Flow via Missing Ownership Check
13 Jul
Fix available
Severity - 8.7 (High)
PYSEC-2026-2567
PyPI/langflow
Langflow: Authenticated Users Can Read, Modify, and Delete Any Flow via Missing Ownership Check
13 Jul
Fix available
Severity - 8.7 (High)
PYSEC-2026-2571
PyPI/langflow-base
Langflow Missing Authentication on Critical API Endpoints
13 Jul
Fix available
Severity - 8.8 (High)
ROOT-APP-PYPI-CVE-2026-55255
Root:PyPI/rootio-langflow
CVE-2026-55255 in rootio-langflow - Patched by Root
09 Jul
Fix available
PYSEC-2026-1525
PyPI/langflow
Langflow affected by Remote Code Execution via validate_code() exec()
07 Jul
No fix available
Severity - 8.9 (High)
PYSEC-2026-1524
PyPI/langflow
Langflow Missing Authentication on Critical API Endpoints
07 Jul
Fix available
Severity - 8.8 (High)
PYSEC-2026-1522
PyPI/langflow
Langflow vulnerable to Server-Side Request Forgery
07 Jul
Fix available
Severity - 7.7 (High)
PYSEC-2026-1526
PyPI/langflow-base
Langflow Vulnerable to Privilege Escalation via CLI Superuser Creation (Post-RCE)
07 Jul
Fix available
Severity - 8.8 (High)
PYSEC-2026-1523
PyPI/langflow
Langflow vulnerable to remote code execution
07 Jul
No fix available
Severity - 6.9 (Medium)
Load more...
Vulnerability Database - OSV