VulnWatch VulnWatch
← Back to dashboard
High nvd · CVE-2026-17623

CVE-2026-17623: IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary commands due to i

Published Aug 5, 2026 CVSS 8.8

IBM Langflow OSS 1.0.0 through 1.10.3 could allow a remote authenticated attacker to execute arbitrary commands due to improper validation of the command field in MCP server configurations.

Affected AI Products

mcp server langflow
Get the weekly digest. Every Monday: top AI security stories of the week. Free.