CVE-2026-51886 | langflow-ai Langflow up to 1.9.3 Code Validation Endpoint validate.py post_validate_code code injection

SecurityVulns

A vulnerability, which was classified as critical, has been found in langflow-ai Langflow up to 1.9.3. This vulnerability affects the function post_validate_code of the file src/backend/base/langflow/api/v1/validate.py of the component Code Validation Endpoint. Performing a manipulation results in code injection.

This vulnerability was named CVE-2026-51886. The attack may be initiated remotely. There is no available exploit.VulDB Recent EntriesRead More