Langflow CVE-2026-0768 with CVSS 9.8 is under active exploitation
VulnCheck is observing continuous exploitation of internet-facing Langflow instances via CVE-2026-0768 (CVSS 9.8): the validate endpoint passes user code straight into Python exec() with no authentication, enabling root-level remote code execution. All versions up to and including 1.4.2 are affected, and attackers are harvesting OpenAI API keys, AWS and SSH credentials.
- CVE-2026-0768 (CVSS 9.8) allows unauthenticated root-level code execution
- All Langflow versions up to and including 1.4.2 are affected
- VulnCheck logged 360+ exploitation attempts on honeypots, mostly from Russia
- 12 Langflow flaws exploited in 2026 versus one before this year
Read next
Security