CVE-2026-0770
Confirmed PUBLISHEDLangflow exec_globals Inclusion of Functionality from Untrusted Control Sphere Remote Code Execution Vulnerability
3 hours faster than CISA KEV
Recommended Action
Prioritize immediate patching and validate internet-facing exposure. Monitor for matching exploitation attempts in your environment.
At a Glance
Langflow exec_globals Inclusion of Functionality from Untrusted Control Sphere Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Langflow. Authentication is not required to exploit this vulnerability. The specific flaw exists within the handling of the exec_globals parameter provided to the validate endpoint. The issue results from the inclusion of a resource from an untrusted control sphere. An attacker can leverage this vulnerability to execute code in the context of root. Was ZDI-CAN-27325.
- CVE Published
- Jan 23, 2026
- Exploited Since
- Jun 27, 2026
- CVSS
- 9.8 Critical
- EPSS
- 10.4%
Affected Versions
| Vendor | Product | Version | Status |
|---|---|---|---|
| Langflow |
Langflow
|
1.4.2 |
Affected |
CVE References
- ZDI-26-036 zerodayinitiative.com · CVE Record https://www.zerodayinitiative.com/advisories/ZDI-26-036/
- CVE-2026-0770 Exploited in the Wild: Langflow RCE Added to CISA KEV Analysis https://blog.kevintel.com/cve-2026-0770-exploited-in-the-wild-langflo...
Recommended Actions
- Prioritize immediate patching and validate internet-facing exposure. Monitor for matching exploitation attempts in your environment.
- Review sensor telemetry for request paths, attacker IPs, and payload patterns that may inform detection and exposure validation.
- Check enrichment artifacts for scanner coverage and available PoCs before rolling remediation validation.
- Use the Pro API to automate enrichment, telemetry, and workflow delivery for VM, SOC, and CTI pipelines.
Known Exploited Vulnerability Sources
Catalogues that list this CVE as a known exploited vulnerability.
Per-source evidence links for KEV attestations are available through the KEVIntel Pro API.
Learn about Pro API access| Source | Added |
|---|---|
| All CISA Advisories First | 2026-07-21 12:00 UTC |
| CISA | 2026-07-21 14:32 UTC |
| KEVIntel | 2026-07-21 15:41 UTC |
| CVE | 2026-07-21 16:01 UTC |
Operational indicators for this CVE are listed on the Detection tab.
Observed Exploitation Attempts
Exploitation attempts against this vulnerability observed first-hand by KEVIntel private honeypots over the last 30 days.
- Attempts Observed
- 201
- Unique Attacker IPs
- 61
- Attacker Countries
- 🇦🇪 🇦🇺 🇧🇬 🇨🇦 🇨🇭 🇨🇳 🇩🇪 🇪🇪 🇪🇸 🇫🇷 🇬🇧 🇭🇰 🇮🇳 🇯🇵 🇲🇾 🇳🇱 🇵🇱 🇸🇬 🇺🇸 🇻🇳
- Sensors Observed
- 7
Exploitation Attempts Over the Last 27 Days
First observed (all time) 2026-06-27 10:18 UTC · Last observed 2026-07-21 17:19 UTC
See more exploitation detail
- Pro — sensor software/region breakdown and 24h/7d window summaries.
- Enterprise — raw attacker IPs, request paths, User-Agents, and payloads.
Indicators of Compromise (IoCs)
Attacker IP IoCs observed in KEVIntel sensors are available to Pro and Enterprise accounts on the Detection tab and through the Pro API.
Learn about Pro API accessObserved Detection Signals (30d)
Aggregate counts from KEVIntel sensor telemetry for this CVE.
- Distinct request paths
- 1
- Distinct User-Agents
- 46
The specific request paths and User-Agents attackers are using are available on Pro and Enterprise plans.
Scanner Artifacts
Nuclei and Metasploit references linked to this CVE.
| Scanner | Reference | Detected |
|---|---|---|
| Nuclei | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2026/CVE-2026-0770.yaml | Jun 01, 2026 |
Virtual Patch
Compensating WAF rules to help reduce exposure to this CVE. Rule content and deployable vendor exports are available with KEVIntel Enterprise.
Supported Platforms
Enterprise feature. Virtual patch rule content and deployable vendor exports (ModSecurity, Cloudflare, AWS WAF) are available to KEVIntel Enterprise users.
GET /api/v2/enterprise/virtual_patches?cve_id=CVE-2026-0770
CVSS Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitation Status
Exploited in the wild
Recorded 2026-07-21 14:32:22 UTC · CISA
Active exploitation observed
Recorded 2026-06-27 10:18:13 UTC · KEVIntel sensor
Proof of concept available
Recorded 2026-02-07 23:31:48 UTC · GitHub
Weaknesses (CWE)
-
Inclusion of Functionality from Untrusted Control Sphere
Scanner Integrations
| Scanner | Reference | Detected |
|---|---|---|
| Nuclei | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2026/CVE-2026-0770.yaml | Jun 01, 2026 |
Recent Mentions
All CISA Advisories · Jul 21, 2026
CISA has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2021-27137 DD-WRT Stack-Based Buffer Overflow Vulnerability CVE-2026-0770 Langflow Inclusion of Functionality from Untrusted Control Sphere Vulnerability CVE-2026-63030 WordPress Core Interpretation Conflict Vulnerability CVE-2026-60137 WordPress Core SQL Injection Vulnerability These types of vulnerabilities are frequent attack vectors for malicious cyber actors and pose significant risks to the federal enterprise. Binding Operational Directive (BOD) 26-04: Prioritizing Security Updates Based on Risk establishes vulnerability management requirements for Federal Civilian Executive Branch (FCEB) agencies. BOD 26-04 reinforces the importance of the KEV Catalog and requires federal agencies to prioritize rapid remediation of high-risk vulnerabilities, specifically those identified by Common Vulnerabilities and Exposures (CVEs) listed in CISA’s KEV Catalog on publicly exposed assets that grant total control of the asset post-exploitation, while deferring action for lower-risk vulnerabilities. BOD 26-04 further establishes basic expectations for when agencies must check whether threat actors compromised the system before the patch was applied. While BOD 26-04 applies only to FCEB agencies, CISA encourages all organizations to adopt risk-based vulnerability management and prioritize remediation of KEV Catalog vulnerabilities. CISA will continue to add vulnerabilities to the catalog that meet the specified criteria. Aware of an exploited vulnerability not currently listed in the KEV Catalog? Submit it for potential addition through CISA’s KEV Nomination Form. Potential KEV additions must have a CVE ID, evidence of exploitation, and clear mitigation guidance.
Potential Proof of Concepts
These PoCs are unverified and could contain malware. Use at your own risk.
github · Created 2026-05-23 21:26:41 UTC · 0 stars
Langflow remote code execution exploit
github · Created 2026-03-08 10:07:18 UTC · 0 stars
github · Created 2026-02-24 20:28:03 UTC · 1 stars
Langflow Remote Code Execution (RCE) Proof-of-Concept
github · Created 2026-02-07 23:31:48 UTC · 5 stars
Proof of Concept for CVE-2026-0770 - Langflow Remote Code Execution
nuclei · Created Unknown
Timeline
Key exploitation, disclosure, scanner coverage, and KEV attestation events for this CVE.
-
16:38 UTC about 8 hours ago16:38 UTC · about 8 hours ago
Virtual patch available
Compensating WAF rule available to block exploitation
-
16:01 UTC about 8 hours ago16:01 UTC · about 8 hours ago
KEV confirmed by CVE
Exploitation attested by an external source
-
14:32 UTC about 10 hours ago14:32 UTC · about 10 hours ago
Added to CISA KEV
Listed in the CISA Known Exploited Vulnerabilities catalog
-
12:00 UTC about 12 hours ago12:00 UTC · about 12 hours ago
Added to KEVIntel KEV Feed
High-confidence, third-party attested exploitation
-
10:18 UTC 25 days ago10:18 UTC · 25 days ago
Observed by KEVIntel sensors
Evidence-backed exploitation signal
-
10:18 UTC 25 days ago10:18 UTC · 25 days ago
Indicators of compromise added (61)
Indicators of compromise recorded
-
15:34 UTC about 2 months ago15:34 UTC · about 2 months ago
Nuclei template available
Scanner coverage available
-
23:31 UTC 5 months ago23:31 UTC · 5 months ago
Public PoC available
Public proof-of-concept code published
-
03:28 UTC 6 months ago03:28 UTC · 6 months ago
CVE published
Vulnerability disclosed publicly
-
22:50 UTC 6 months ago22:50 UTC · 6 months ago
CVE ID reserved
Identifier reserved by the CNA
Automate This Intelligence with the Pro API
Confidence scoring, exploit status, sensor telemetry, PoCs, scanner integrations, mentions, and tags are available programmatically for VM, SOC, and CTI workflows.
Pro API Example
GET /api/v2/pro/kevs/CVE-2026-0770
{
"cve_id": "CVE-2026-0770",
"title": "Langflow exec_globals Inclusion of Functionality from Untrusted Control Spher...",
"affected_vendor": "Langflow",
"affected_product": "Langflow",
"affected_versions": [
{ "vendor": "...", "product": "...", "status": "affected", "display_label": "..." }
],
"confidence": "Confirmed",
"cvss_score": 9.8,
"epss_score": 0.10371,
"exploit_status": {
"exploited_in_the_wild": true,
"active_exploitation_observed": true
},
"sensor_telemetry": { "...": "Pro API fields" },
"proof_of_concepts": [ "..." ],
"scanner_integrations": [ "..." ]
}