IBM Langflow OSS Vulnerability: Critical CVE-2026-19286 Alert
- Severity
- CRITICAL
- CVSS
- 9.8
- Affected component
- ibm langflow (npm)
- Patched version
- Not yet available
An early warning has been issued for a critical vulnerability in IBM Langflow OSS versions 1.0.0 through 1.11.1. This vulnerability could allow a remote attacker to execute arbitrary code due to improper enforcement of security restrictions on the A2A public endpoint.
What happened
The vulnerability, tracked as CVE-2026-19286, has a CVSS score of 9.8 and is classified as critical. It affects the ibm langflow npm package in versions 1.0.0 through 1.11.1. The issue arises from improper enforcement of security restrictions on the A2A public endpoint, which could allow a remote attacker to execute arbitrary code. This vulnerability is under investigation and has not been reported as exploited in the wild.
The vulnerability was first flagged on 2026-08-28T22:16:47.357000+00:00. Users of the affected versions should assess their exposure and take immediate action to mitigate the risk.
What to do about it
- Upgrade to a version beyond 1.11.1 of the ibm langflow npm package.
- Apply a patch if one becomes available.
- Monitor the primary sources for updates on the vulnerability and any available patches.
How 0Day would have caught this
ibm langflow is anywhere in your dependency tree, the engineers who own the affected repositories get a push alert the moment it is flagged — no manual audit to remember to run.Read how this differs from waiting on a scanner to catch a known advisory, or see the exact, read-only access 0Day needs to do this for an organization.
Frequently asked questions
Am I affected?
You are affected if you are using ibm langflow npm package versions 1.0.0 through 1.11.1.
What should I do right now?
Upgrade to a version beyond 1.11.1 or apply a patch if available. Monitor the primary sources for updates.
Is there an official fix available?
No official fix has been published yet. Monitor the primary sources for updates.