VDB
KO
MEDIUM 6.1

PYSEC-2026-244

Details

Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.10.0, the "Shareable Playground" (or "Public Flows" in code) contains a potential arbitrary file-read vulnerability, depending on the exact flow configuration used. By making a flow public, public execution of the flow is allowed. The execution request can contain a list of files that gets read by Langflow and fed into the LLM. The files path can be any path supported by the storage - it can be either a local file or S3 path if supported by the local configuration This vulnerability is fixed in 1.10.0.

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI / langflow
Introduced in: 0 Fixed in: 1.10.0
Fix pip install --upgrade 'langflow>=1.10.0'

References