References https://github.com/langflow-ai/langflow/security/advisories/GHSA-3645-fxcv-hqr4 https://nvd.nist.gov/vuln/detail/CVE-2026-27966 https://zhuanlan.zhihu.com/p/2010689293098717819 https://github.com/Threekiii/Vulnerability-Wiki/blob/master/docs-base/docs/ai/Langflow-CSV-Agent-%E8%BF%9C%E7%A8%8B%E4%BB%A3%E7%A0%81%E6%89%A7%E8%A1%8C%E6%BC%8F%E6%B4%9E-CVE-2026-27966.md https://www.ithome.com.tw/news/174171 https://www.sentinelone.com/vulnerability-database/cve-2026-27966/ https://gbhackers.com/langflow-csv-agent-flaw/ https://www.thehackerwire.com/langflow-csv-agent-rce-via-prompt-injection/
Related VulnerabilitiesPoClangflow-api-exposure: Langflow - Unauthenticated API ExposurePoCCVE-2026-0768: Langflow <=1.2.x - Unauthenticated Remote Code Execution via validate_codePoCvictoriametrics-vmagent-api-exposure: VictoriaMetrics vmagent - Unauthenticated Targets Exposure用友时空-KSOA /worksheet/agent_worksadd.jsp SQL 注入漏洞用友时空-KSOA /worksheet/agent_work_report.jsp SQL 注入漏洞PoCCVE-2026-71362: Adobe Commerce/Magento - Customer Session Identity SwitchPoCclaude-code-agents: Claude Code Subagent Configuration - ExposureLangflow /api/v1/custom_component 代码执行漏洞(CVE-2024-37014)PoCCVE-2024-37014: Langflow <= 1.0.12 - Remote Code ExecutionIBM Langflow OSS 远程代码执行漏洞(CVE-2026-9198)PoCCVE-2026-55450: Langflow < 1.9.1 - Unauthenticated File UploadPoCCVE-2026-33497: Langflow < 1.7.0 - Path TraversalPoCCVE-2026-9198: IBM Langflow - Remote Code Execution