Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-qg33-x2c5-6p44: Langflow remote code execution vulnerability

Langflow through 0.6.19 allows remote code execution if untrusted users are able to reach the “POST /api/v1/custom_component” endpoint and provide a Python script.

ghsa
#vulnerability#git#rce

Langflow remote code execution vulnerability

High severity GitHub Reviewed Published Jun 10, 2024 to the GitHub Advisory Database • Updated Jun 11, 2024

ghsa: Latest News

GHSA-6jrf-rcjf-245r: changedetection.io path traversal using file URI scheme without supplying hostname