Skip to content

[GHSA-vvfc-fp59-m92g] Langflow: DoS Through Lack of File Size Restriction via Deprecated Unauthenticated File Upload API#7697

Open
ventusfortis wants to merge 1 commit into
ventusfortis/advisory-improvement-7697from
ventusfortis-GHSA-vvfc-fp59-m92g
Open

[GHSA-vvfc-fp59-m92g] Langflow: DoS Through Lack of File Size Restriction via Deprecated Unauthenticated File Upload API#7697
ventusfortis wants to merge 1 commit into
ventusfortis/advisory-improvement-7697from
ventusfortis-GHSA-vvfc-fp59-m92g

Conversation

@ventusfortis
Copy link
Copy Markdown

Updates

  • Affected products
  • CVSS v3
  • CVSS v4

Comments
There is an error in affected package version range: versions of the langflow-base package do not match versions of the langflow package. The latest version of the package on PyPi is 0.9.2 (https://pypi.org/project/langflow-base/#history) and the fix was submitted in version 0.9.1 (langflow-ai/langflow@b566244)

@github-actions github-actions Bot changed the base branch from main to ventusfortis/advisory-improvement-7697 May 15, 2026 09:49
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant