VYPR
Critical severity9.8NVD Advisory· Published Nov 4, 2024· Updated Jun 17, 2026

CVE-2024-48061

CVE-2024-48061

Description

langflow <=1.0.18 is vulnerable to Remote Code Execution (RCE) as any component provided the code functionality and the components run on the local machine rather than in a sandbox.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
langflowPyPI
<= 1.0.18

Affected products

3
  • cpe:2.3:a:langflow:langflow:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:langflow:langflow:*:*:*:*:*:*:*:*range: <=1.0.18
    • (no CPE)
  • ghsa-coords
    Range: <= 1.0.18

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.