peter bassill · operator
$ cve CVE-2025-34291 JSON

CVE-2025-34291 KEV

8.8
HIGH · CVSS 3.1 · EPSS 92.8% (pctl 100)

Patch first

On CISA KEV — known exploited in the wild, due 2026-06-04.

Description

Langflow versions up to and including 1.6.9 contain a chained vulnerability that enables account takeover and remote code execution. An overly permissive CORS configuration (allow_origins='*' with allow_credentials=True) combined with a refresh token cookie configured as SameSite=None allows a malicious webpage to perform cross-origin requests that include credentials and successfully call the refresh endpoint. An attacker-controlled origin can therefore obtain fresh access_token / refresh_token pairs for a victim session. Obtained tokens permit access to authenticated endpoints — including built-in code-execution functionality — allowing the attacker to execute arbitrary code and achieve full system compromise.

Scoring

CVSS8.8 (HIGH, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS92.81% — more likely to be exploited than 100% of all CVEs
WeaknessCWE-346
On CISA KEVyes — remediate by 2026-06-04
Public exploitnone known
Published2025-12-05
Last modified2026-07-14

CISA KEV

NameLangflow Origin Validation Error Vulnerability
Added2026-05-21
Due2026-06-04
Vendor / productLangflow / Langflow
Ransomware usenone reported

Affected (1)

VendorProduct
langflowlangflow

References

→ the Explorer  ·  watch your stack  ·  NVD