AI analysis
CVE-2026-97674 is a code-injection flaw (CWE-94) in IBM Langflow OSS that lets a remote authenticated attacker execute arbitrary operating-system commands. It is caused by improper neutralization of special elements used when the product generates or runs an OS command, and it can be reached over the network with low privileges and no user interaction. A successful attack can fully compromise confidentiality and integrity of the host; availability is not scored as impacted (CVSS 3.1 base score 8.1). IBM Langflow OSS versions 1.0.0 through 1.12.2 are affected. No public proof-of-concept is known, and the issue is not listed in CISA's Known Exploited Vulnerabilities catalog.
What to do: Apply IBM's security update that addresses CVE-2026-97674; Langflow OSS 1.0.0 through 1.12.2 are affected, and the fixed release number is not stated in the advisory data. Until patched, limit network access to trusted operators, keep authentication required, and review logs for unexpected OS command execution by low-privilege accounts.
Affected
| IBM Langflow OSS | 1.0.0 through 1.12.2 |
Estimated exposure
—No basis for an estimate.
Order-of-magnitude estimate by the model from install counts, market share and public scan data it knows; verify before quoting.
Description
IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to execute arbitrary OS commands due to improper neutralization of special elements used in an OS command ('Code Injection'), aka improper control of code generation.