Because attacker-supplied flow data is used in public flows, the bug leads to unauthenticated remote code execution.
The U.S. Cybersecurity & Infrastructure Security Agency (CISA) has tagged a Langflow remote code execution vulnerability as actively exploited, urging organizations to apply security updates and ...