Package impact

python PyPI / langflow

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2025-34291 high 8.8 10.0 6mo ago Langflow contains an origin validation error vulnerability in which an overly permissive CORS configuration combined with a refresh token cookie configured as SameSite=None allows a malicious webpage…
CVE-2026-34046 high 8.8 8.8 2mo ago Langflow: Authenticated Users Can Read, Modify, and Delete Any Flow via Missing Ownership Check