Intel

AIKIDO-2026-896011

langflow is vulnerable to Code Injection

Code InjectionGHSA-9fpm-3445-2vx4 Published 3 days ago

88

High Risk

This Affects:

PYTHONlangflow
1.3.0 - 1.10.2
Fixed in 1.10.3
Are you affected? Scan for Free

TL;DR

Langflow’s Smart Transform LambdaFilterComponent validates only that a user-controlled expression begins with lambda and contains a colon before evaluating it with Python eval() and full builtins. A flow author or prompt-injected model output can execute arbitrary operating-system commands in the Langflow process. The fix replaces unsafe evaluation with constrained parsing and execution.

Who does this affect?

You are affected if you are using a version that falls within the vulnerable range and untrusted users or model output can configure Smart Transform lambda filters.

Background info

langflow is vulnerable to Code Injection in versions 1.3.0 - 1.10.2.

How to fix this

Upgrade the langflow library to the patch version.

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform