
Nutzt CVE-2026-9198 in Langflow aus, um über einen manipulierten URL-Parameter beliebige Bash-Befehle auf Zielinstanzen auszuführen.
Proof-of-Concept-Exploit-Code für CVE-2026-9198
Exploit-DB-Eintrag: https://www.exploit-db.com/exploits/52675
python3 poc.py -u <langflow url> -c <bash command>
