Junglewise Threat Intelligence

CVE-2026-14499: IBM Langflow OSS command injection in Python Interpreter

CVE-2026-14499 · Severity: high · CVSS 8.8 · Published 2026-07-17

Technologies: IBM Langflow OSS. Vendors: IBM.

Executive brief

IBM Langflow OSS, a tool used to build AI-powered workflows, contains a security flaw in its Python Interpreter component. An authorized user could exploit this to run unauthorized commands on the underlying server with elevated permissions. This could lead to a complete takeover of the system, data theft, or disruption of AI services.

Technical details

An OS command injection vulnerability (CWE-78) exists in IBM Langflow OSS versions 1.0.0 through 1.10.1. The flaw is located within the Python Interpreter component, which fails to properly validate user-supplied input before processing. A remote attacker with low-level authenticated access can exploit this vulnerability by submitting specially crafted input to execute arbitrary commands on the host operating system. Successful exploitation grants the attacker elevated privileges, potentially leading to full system compromise. The issue is resolved in Langflow OSS version 1.10.2.

Affected products

  • IBM Langflow OSS 1.0.0 through 1.10.1

Timeline

  • 2026-07-14: advisory: Initial publication by IBM
  • 2026-07-17: disclosed: NVD publication date

References

Related threats