What is CVE-2026-13435?
Improper input validation vulnerability exists in the PythonREPL sandbox implementation of IBM Langflow OSS versions 1.0.0 through 1.10.1. This could allow an attacker to bypass security restrictions. Users are advised to update the software.
Azərbaycanca: IBM Langflow OSS proqramının 1.0.0-dən 1.10.1-ə qədər versiyalarında PythonREPL sandbox tətbiqində düzgün olmayan input validation zəifliyi aşkar edilib. Bu, təhlükəsizlik məhdudiyyətlərindən yayınmağa imkan verə bilər. İstifadəçilərə proqramı yeniləmələri tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-20; shared vendor: IBM
FAQ2
Which versions of IBM Langflow OSS are affected by CVE-2026-13435?
Versions 1.0.0 through 1.10.1.
What could this vulnerability lead to in terms of security?
It could allow bypassing security restrictions.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.