CVE-2024-48061
langflow <=1.0.18 is vulnerable to Remote Code Execution (RCE) as any component provided the code functionality and the components run on the local machine rather than in a sandbox.
- Affected products
- Langflow
- Langflow
- ≤ 1.0.18
- Fix
- Available
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 1.4% (69th percentile)
- Weakness
- CWE-94
- NVD status
- Analyzed
- Published
- 2024-11-04
CVE-2024-48061 at NVD
2 known exploits for CVE-2024-48061
Proof-of-concept code and exploit modules indexed by Sploitus