| ベンダー | プロダクト | Version Range | ステータス |
|---|---|---|---|
| IBM | Langflow OSS | 1.0.0≤ 1.10.3 | affected |
高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。
| ベンダー | プロダクト | 影響を受けるバージョン | CPE | 購読 |
|---|---|---|---|---|
| IBM | Langflow OSS | 1.0.0 ~ 1.10.3 | cpe:2.3:a:ibm:langflow_oss:1.0.0:*:*:*:*:*:*:* |
| # | POC説明 | ソースリンク | Shenlongリンク |
|---|
公開POCは見つかりませんでした。
ログインしてAI POCを生成| CVE-2026-17632 | 8.8 HIGH | Langflow OSS is affected by arbitrary code execution in component generation, validation, |
| CVE-2026-17626 | 8.8 HIGH | Langflow is affected by security vulnerabilities in Model Context Protocol features |
| CVE-2026-8182 | 8.8 HIGH | Langflow OSS is affected by arbitrary code execution in component generation, validation, |
| CVE-2026-9201 | 8.8 HIGH | Langflow OSS is affected by arbitrary code execution in component generation, validation, |
| CVE-2026-8478 | 8.8 HIGH | Langflow OSS is affected by arbitrary code execution in component generation, validation, |
| CVE-2026-17623 | 8.8 HIGH | Langflow is affected OS Command Injection in Model Context Protocol features |
| CVE-2026-17633 | 8.5 HIGH | Langflow OSS is affected by arbitrary code execution in component generation, validation, |
| CVE-2026-9077 | 8.5 HIGH | Reliance on Untrusted Inputs in a Security Decision vulnerabilities in Model Context Proto |
| CVE-2026-17624 | 8.5 HIGH | Langflow OSS is affected by arbitrary code execution in component generation, validation, |
| CVE-2026-17617 | 8.5 HIGH | Server-Side Request Forgery (SSRF) in IBM Application Gateway Operator |
| CVE-2026-10025 | 8.2 HIGH | IBM QRadar SIEM has an XML External Entity (XXE) injection vulnerability |
| CVE-2026-8400 | 8.1 HIGH | Multiple Vulnerabilities in IBM® Java SDK affect IBM WebSphere Application Server and WebS |
| CVE-2026-9196 | 8.1 HIGH | Langflow OSS is affected by arbitrary code execution in component generation, validation, |
| CVE-2026-8183 | 7.7 HIGH | Langflow OSS is affected by arbitrary code execution in custom component validation and tr |
| CVE-2026-8446 | 7.5 HIGH | Langflow is affected by security vulnerabilities in Model Context Protocol features |
| CVE-2026-8470 | 7.4 HIGH | Langflow is affected by weaknesses in secret handling and sensitive configuration access |
| CVE-2026-9205 | 7.4 HIGH | Langflow is affected by weaknesses in secret handling and sensitive configuration access |
| CVE-2026-17625 | 7.2 HIGH | Langflow is affected by OS Command Injection in Model Context Protocol features |
| CVE-2026-17630 | 7.2 HIGH | Langflow is affected by security vulnerabilities in Model Context Protocol features |
| CVE-2026-9081 | 7.1 HIGH | Langflow OSS is affected by server-side request forgery in provider validation and API req |
Showing 20 of 32 CVEs. View all on vendor page →
まだコメントはありません