VulnWatch VulnWatch
← Back to dashboard
Critical nvd · CVE-2026-8635

CVE-2026-8635: IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated users to escalate privileges to superuser by directly manipul

Published Jul 17, 2026 CVSS 9.9

IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated users to escalate privileges to superuser by directly manipulating the database, execute arbitrary system commands, and achieve full system compromise with Langflow service permissions.

Affected AI Products

langflow
Get the weekly digest. Every Monday: top AI security stories of the week. Free.