CRITICALVulnerability
Verified
Global
NVD CRITICAL: CVE-2026-7524 — IBM Langflow OSS 1.0.0 through 1.9.1 could allow remote code execution due to im...
·Source: NIST NVD
Updated:
Executive Summary
IBM Langflow OSS 1.0.0 through 1.9.1 could allow remote code execution due to improper validation of symbolic links during archive extraction.
Analysis
IBM Langflow OSS 1.0.0 through 1.9.1 could allow remote code execution due to improper validation of symbolic links during archive extraction. CVSS Score: 9.8. Published: 2026-05-27T14:17:35.443.