CVE-2026-0770
exploitation · critical · Evidence score 90
- Vendor
- Langflow
- Affected software
- Langflow Langflow
- Exploitation signal
- Listed in CISA Known Exploited Vulnerabilities
- EPSS
- 0.56267
Langflow contains an inclusion of functionality from untrusted control sphere vulnerability that allows remote attackers to execute arbitrary code on affected installations.
Provenance
CISA Known Exploited Vulnerabilities
21 July 2026, 10:00 AM AEST