CVE-2026-55423
Langflow is a tool for building and deploying AI-powered agents and workflows. Prior to 1.7.0, the logout button does not clear the session. The previous user stays logged in unless another user explicitly logs in. This vulnerability is fixed in 1.7.0.
- Affected products
- Langflow
- Langflow
- < 1.7.0
- Fix
- Available
- CVSS 3.1
- 6.1 MEDIUM
- EPSS
- 0.2% (9th percentile)
- Weakness
- CWE-613
- NVD status
- Analyzed
- Published
- 2026-06-23
CVE-2026-55423 at NVD
No indexed exploits for CVE-2026-55423 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2026-55423 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.