logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2024-37014

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2024-37014

Description:
Langflow through 0.6.19 allows remote code execution if untrusted users are able to reach the "POST /api/v1/custom_component" endpoint and provide a Python script.
Last updated date:
07/03/2024
Type:
exploit
Confidence:
HIGH
Date of publishing:
06/12/2024
Reference url to background

https://github.com/langflow-ai/langflow/issues/1973

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy