Langflow CVE-2026-9198: Patch the CISA KEV AI Workflow Risk
CISA added Langflow CVE-2026-9198 to KEV. Self-hosted Langflow OSS 1.0.0 through 1.10.0 should move to 1.10.1 and review service exposure and connected credentials.
Learn More
CISA added Langflow CVE-2026-9198 to KEV. Self-hosted Langflow OSS 1.0.0 through 1.10.0 should move to 1.10.1 and review service exposure and connected credentials.
Learn MoreCISA added Langflow CVE-2026-0770 to KEV. Update affected AI workflow servers to 1.9.0 or later, restrict access, and review connected credentials.
Learn MoreCISA added Langflow CVE-2026-55255 to KEV. Update to 1.9.2 or later, restrict exposed builders, and review tenant boundaries.
Learn MoreCISA updated CVE-2025-3248 for Langflow to known ransomware campaign use. Check exposed Langflow, upgrade to 1.3.0 or later, and review connected secrets.
Learn MoreLangflow CVE-2026-33017 is a critical AI workflow builder RCE issue fixed in 1.9.0, with active abuse reporting against exposed systems.
Learn MoreUpdate Langflow after CVE-2026-5027, rebuild deployed containers, restrict exposed AI app servers, and review files, logs, secrets, and workflow access.
Learn More