Junglewise Threat Intelligence

CVE-2026-81940: IBM Langflow OSS code injection in flow display names

CVE-2026-81940 · Severity: high · CVSS 8.8 · Published 2026-09-10

Technologies: IBM Langflow OSS, Langflow. Vendors: IBM, Langflow.

Executive brief

IBM Langflow is an open-source platform for building and deploying AI workflows. This vulnerability allows authenticated users to inject malicious code through flow display names, enabling arbitrary code execution on the server. An attacker with valid credentials could manipulate the application logic or data, potentially compromising sensitive information or disrupting service availability.

Technical details

The vulnerability is a code injection flaw (CWE-94) in IBM Langflow OSS versions 1.0.0 through 1.11.5, caused by improper neutralization of special characters in flow display names. An authenticated attacker can craft malicious input in the display name field that is not properly sanitized before being processed by the application logic. The attack requires valid user credentials (authentication required) and network access to the Langflow instance. Successful exploitation allows arbitrary code execution in the context of the application, potentially leading to data theft, system compromise, or denial of service. IBM has released patches to address this and related code execution vulnerabilities in Langflow.

Affected products

  • IBM Langflow OSS 1.0.0 through 1.11.5

Timeline

  • 2026-09-10: disclosed

References

Related threats