{"schema_version":"1.7.5","id":"PYSEC-2026-380","published":"2026-06-29T11:50:38.282690Z","modified":"2026-07-01T20:22:55.660388Z","aliases":["CVE-2025-3248","GHSA-rvqx-wpfh-mfx7","PYSEC-2025-36"],"summary":"Langflow Unauth RCE","details":"Langflow versions prior to 1.3.0 are susceptible to code injection in the /api/v1/validate/code endpoint. A remote and unauthenticated attacker can send crafted HTTP requests to execute arbitrary code.","affected":[{"package":{"name":"langflow-base","ecosystem":"PyPI","purl":"pkg:pypi/langflow-base"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.3.0"}]}],"versions":["0.0.13","0.0.14","0.0.15","0.0.16","0.0.17","0.0.18","0.0.19","0.0.20","0.0.21","0.0.22","0.0.23","0.0.24","0.0.25","0.0.26","0.0.27","0.0.28","0.0.29","0.0.30","0.0.31","0.0.32","0.0.33","0.0.34","0.0.35","0.0.36","0.0.37","0.0.38","0.0.39","0.0.40","0.0.41","0.0.42","0.0.43","0.0.44","0.0.45","0.0.46","0.0.47","0.0.48","0.0.49","0.0.50","0.0.51","0.0.52","0.0.53","0.0.54","0.0.55","0.0.56","0.0.57","0.0.58","0.0.59","0.0.60","0.0.61","0.0.62","0.0.63","0.0.64","0.0.66","0.0.67","0.0.68","0.0.69","0.0.70","0.0.71","0.0.72","0.0.73","0.0.74","0.0.75","0.0.76","0.0.77","0.0.78","0.0.79","0.0.80","0.0.81","0.0.82","0.0.83","0.0.84","0.0.85","0.0.86","0.0.87","0.0.88","0.0.89","0.0.90","0.0.91","0.0.92","0.0.93","0.0.94","0.0.95","0.0.96","0.0.97","0.0.98","0.0.99","0.1.0","0.1.1","0.1.2","0.1.3","0.1.4","0.1.4.post1","0.2.0"],"database_specific":{"source":"https://github.com/pypa/advisory-database/blob/main/vulns/langflow-base/PYSEC-2026-380.yaml"}}],"references":[{"type":"WEB","url":"https://github.com/langflow-ai/langflow/security/advisories/GHSA-rvqx-wpfh-mfx7"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-3248"},{"type":"WEB","url":"https://github.com/langflow-ai/langflow/pull/6911"},{"type":"WEB","url":"https://github.com/langflow-ai/langflow/commit/faac4db133de32fcb6d483fa9ff52f40ce42bdc0"},{"type":"PACKAGE","url":"https://github.com/langflow-ai/langflow"},{"type":"WEB","url":"https://github.com/langflow-ai/langflow/releases/tag/1.3.0"},{"type":"WEB","url":"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-3248"},{"type":"WEB","url":"https://www.horizon3.ai/attack-research/disclosures/unsafe-at-any-speed-abusing-python-exec-for-unauth-rce-in-langflow-ai"},{"type":"WEB","url":"https://www.vulncheck.com/advisories/langflow-unauthenticated-rce"},{"type":"PACKAGE","url":"https://pypi.org/project/langflow-base"},{"type":"ADVISORY","url":"https://github.com/advisories/GHSA-rvqx-wpfh-mfx7"}],"severity":[{"type":"CVSS_V4","score":"CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:A"}]}