🔴 Critical  |  Source: CISA Known Exploited Vulnerabilities


CVE-2026-0770 is a critical remote code execution vulnerability in Langflow, an open-source tool used to build AI-powered workflows. The flaw allows attackers to execute arbitrary code on affected systems by abusing untrusted functionality included within the application. It has been added to CISA’s Known Exploited Vulnerabilities catalogue, confirming active exploitation in the wild.

Security Architect’s Take: Identify any Langflow instances running in your environment — including developer sandboxes and AI/ML pipelines — and patch immediately or isolate them from public access. Given active exploitation, treat any internet-exposed Langflow deployments as potentially compromised and conduct a thorough investigation before patching.

Original advisory: CVE-2026-0770: Langflow Langflow