Back to CVE List

CVE-2026-3357

HIGH SEVERITY

CVSS Score & Metrics

Base Score
8.8 / 10
Vector String
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Vulnerability Description

IBM Langflow Desktop 1.6.0 through 1.8.2 Langflow could allow an authenticated user to execute arbitrary code on the system, caused by an insecure default setting which permits the deserialization of untrusted data in the FAISS component.

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-502
Source
NVD
Vendor
langflow
Product
langflow

External References

Discussion (0)

Add Comment

No comments yet. Be the first!