Critical severity9.8CISA KEVNVD Advisory· Published Jul 17, 2026· Updated Aug 17, 2026
CVE-2026-9198
CVE-2026-9198
Description
IBM Langflow OSS 1.0.0 through 1.10.0 allows unauthenticated attackers to chain /api/v1/auto_login (mints SUPERUSER tokens to any network caller) with /api/v1/validate/code (executes user code via exec()) to achieve full RCE on default Langflow deployments
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: 1.0.0 - 1.10.0
Patches
Vulnerability mechanics
References
2- www.ibm.com/support/pages/node/7278927nvdVendor Advisory
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
News mentions
6- Metasploit Wrap Up: Payloads and Exploits, and Scanners, Oh my!Rapid7 Blog · Aug 28, 2026
- Breach Roundup: Water Utilities in 12 US States HitGovInfoSecurity · Aug 7, 2026
- IBM's agentic AI platform is under active attack - patch nowThe Register Security · Aug 5, 2026
- CISA Warns of Exploited Langflow, N-central, and Tomcat VulnerabilitiesSecurityWeek · Aug 5, 2026
- CISA Flags Langflow RCE, Tomcat, and N-central Flaws as Actively ExploitedThe Hacker News · Aug 5, 2026
- CISA Adds Three Known Exploited Vulnerabilities to CatalogCISA Alerts