10:40
2026-10-09
dev.to
ai-safety
CVE-2026-93674 and the Credential Risk in Self-Hosted LLM Platforms
Langflow OSS versions 1.0.0 through 1.12.2 contain an unauthenticated OS command injection flaw tracked as CVE-2026-93674 with a CVSS 3.1 score of 9.8, which IBM rates as exploitable without authentic…