chiprook
← Security
SecurityOctober 6, 2026, 17:00

Langflow CVE-2026-0768 with CVSS 9.8 is under active exploitation

VulnCheck is observing continuous exploitation of internet-facing Langflow instances via CVE-2026-0768 (CVSS 9.8): the validate endpoint passes user code straight into Python exec() with no authentication, enabling root-level remote code execution. All versions up to and including 1.4.2 are affected, and attackers are harvesting OpenAI API keys, AWS and SSH credentials.

Langflow CVE-2026-0768 with CVSS 9.8 is under active exploitation
#Langflow#VulnCheck#OpenAI
Read next
Security

Cisco warns of active exploitation of CVSS 9.8 SD-WAN Manager auth bypass

Security

F5 patches exploited CVSS 9.8 flaw in BIG-IP APM

Security

CVE-2026-69730: CVSS 9.8 RCE in Windows DNS Server in September Patch

Security

CVSS 10.0 VeloCloud Orchestrator flaw actively exploited