Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-5p5r-57fx-pmfr | Langflow vulnerable to remote code execution |
Wed, 06 Nov 2024 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Langflow
Langflow langflow |
|
| Weaknesses | CWE-94 | |
| CPEs | cpe:2.3:a:langflow:langflow:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Langflow
Langflow langflow |
|
| Metrics |
cvssV3_1
|
Mon, 04 Nov 2024 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | langflow <=1.0.18 is vulnerable to Remote Code Execution (RCE) as any component provided the code functionality and the components run on the local machine rather than in a sandbox. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-03-27T15:51:35.444Z
Reserved: 2024-10-08T00:00:00.000Z
Link: CVE-2024-48061
Updated: 2024-11-06T19:18:16.301Z
Status : Analyzed
Published: 2024-11-04T23:15:04.560
Modified: 2025-05-28T20:56:46.417
Link: CVE-2024-48061
No data.
OpenCVE Enrichment
No data.
Github GHSA