THREAT OPS › Threat News › [NVD] CVE-2026-81941 (HIGH 8.8) — IBM Langflow OSS 1.0.0 through 1.11.5 allows an authenticated non-administrative user could execute arbitrary operating system commands on the server at the privilege level of the application process by constructing a flow with an MCP Tools component configured to use a local std
[NVD] CVE-2026-81941 (HIGH 8.8) — IBM Langflow OSS 1.0.0 through 1.11.5 allows an authenticated non-administrative user could execute arbitrary operating system commands on the server at the privilege level of the application process by constructing a flow with an MCP Tools component configured to use a local std
CVE-2026-81941 CVSS: 8.8 HIGH Published: 2026-09-10T22:17:03.220
IBM Langflow OSS 1.0.0 through 1.11.5 allows an authenticated non-administrative user could execute arbitrary operating system commands on the server at the privilege level of the application process by constructing a flow with an MCP Tools component configured to use a local stdio subprocess transport. This bypasses both the LANGFL
MITRE ATT&CK techniques
- CredentialsT1589.001
Indicators of compromise
- CVE-2026-81941cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-81941