GHSA-hhxr-7j22-694rLow· 6.3▾ SunlitDuplicate Advisory: Prompt injection in Langflow Smart Transform can lead to code execution
▾ Sunlit zone — Low / medium · no exploitation signal
impact 34.7 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via GHSA
Last analysed / modified upstream
This advisory has been withdrawn because it is a duplicate of GHSA-9fpm-3445-2vx4. This link is maintained to preserve external references.
A weakness has been identified in langflow-ai langflow up to 1.8.4. This affects the function eval of the file src/lfx/src/lfx/components/llm_operations/lambda_filter.p of the component LambdaFilterComponent. Executing a manipulation can lead to code injection. The attack may be performed from remote. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
langflow >= 1.3.0, < 1.10.3Refer to the advisory for the patched release.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-7700High· 8.8Langflow: Prompt injection in Langflow Smart Transform can lead to code execution
GHSA-9cc5-j3qq-69gvCritical· 9.8Duplicate Advisory: Unauthenticated Flow Execution via Webhook Authentication Bypass
GHSA-qqw9-2vj9-hx7rHighDuplicate Advisory: Title Authenticated Remote Code Execution in validate_code via Malicious Decorators Description
CVE-2026-9205Critical· 9.1Langflow: Weak Fernet Key via random.seed()
GHSA-9pw3-x84f-xcwfHigh· 7.4Duplicate Advisory: Langflow: Weak Fernet Key via random.seed()
CVE-2026-51886High· 8.8langflow-ai langflow v1.9.3 is affected by: Code Injection