---
id: CVE-2026-3357
title: >-
  IBM Langflow Desktop 1.6.0 through 1.8.2 Langflow could allow an authenticated
  user to execute arbitrary code on the system, caused by an insecure default
  setting which permits the deserialization of untrusted data in the FAISS
  component.
summary: >-
  IBM Langflow Desktop 1.6.0 through 1.8.2 Langflow could allow an authenticated
  user to execute arbitrary code on the system, caused by an insecure default
  setting which permits the deserialization of untrusted data in the FAISS
  component.
severity: high
cvss: 8.8
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'
cwe:
  - CWE-502
vendor: langflow
product: langflow
affected:
  - 'langflow >= 1.6.0, < 1.8.3'
patched:
  - langflow 1.8.3
published: '2026-04-08'
updated: '2026-07-24'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-3357'
references:
  - url: 'https://www.ibm.com/support/pages/node/7268428'
    label: psirt@us.ibm.com
tags:
  - nvd
epss: 0.00466
epssPercentile: 0.39543
ingestedAt: '2026-07-25T23:05:58.464Z'
---

## Overview

IBM Langflow Desktop 1.6.0 through 1.8.2 Langflow could allow an authenticated user to execute arbitrary code on the system, caused by an insecure default setting which permits the deserialization of untrusted data in the FAISS component.

## Affected

- `langflow >= 1.6.0, < 1.8.3`

## Remediation

Upgrade past the affected range:

- `langflow 1.8.3`
