'Easily Exploitable' Langflow Vulnerability Requires Immediate Patching
ID: 08af9ed7-cdb7-58e2-8508-533e406441ba
STIX ID: report--08af9ed7-cdb7-58e2-8508-533e406441ba
Feed Name: Dark Reading
Date Published: 2025-05-06
Date Updated: 2026-04-21
Author: Kristina Beek, Associate Editor, Dark Reading
A critical unauthenticated code-injection remote code execution vulnerability (CVE-2025-3248, CVSS 9.8) affecting Langflow versions prior to 1.3.0 allows attackers to execute arbitrary Python code via the /api/v1/validate/code endpoint by invoking exec() on user-supplied input; Horizon3 published a PoC, researchers observed exploit activity in April, and CISA added the vulnerability to its KEV — administrators should update to Langflow 1.3.0 and avoid exposing development AI tools to the Internet.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
