CVE-2025-34291
Dec 5, 2025
Langflow versions up to and including 1.6.9 contain a chained vulnerability that enables account takeover and remote code execution. An overly permissive CORS configuration (allow_origins='*' with all...
Read Advisory
1 advisories affecting Langflow
1
Total CVEs
1
Critical
0
High