logo

Critical Langflow Vulnerability (CVE-2025-3248) Actively Exploited, Warns CISA

ID: 0d879a84-d86a-5ce4-92f9-8c4eb99d9054

STIX ID: report--0d879a84-d86a-5ce4-92f9-8c4eb99d9054

Feed Name: HackRead

Threat Score
90/100

Date Published: 2025-05-07

Date Updated: 2026-04-22

Author: Waqas

...
...

**Executive Summary:** CISA warns of active exploitation of a critical Langflow remote code execution vulnerability (CVE-2025-3248, CVSS 9.8) that allows full server takeover via an unauthenticated endpoint; Horizon3.ai detailed how untrusted Python code execution (bypassable via decorators and default arguments) enables remote shells and data exfiltration, CISA added the issue to its Known Exploited Vulnerabilities catalog on May 5, 2025, and users are strongly advised to upgrade to Langflow 1.3.0 or implement strict network access controls.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.