¡¾·ì϶¹«¸æ¡¿Langflow δÊÚȨԶ³Ì´úÂëÖ´Ðзì϶(CVE-2026-33017)
°ä²¼¹¦·ò 2026-03-23Ò»¡¢·ì϶¸ÅÊö
·ìϼûû³Æ | Langflow δÊÚȨԶ³Ì´úÂëÖ´Ðзì϶ | ||
CVE ID | CVE-2026-33017 | ||
·ì϶ÀàÐÍ | RCE | ·¢ÏÖ¹¦·ò | 2026-3-23 |
·ì϶ÆÀ·Ö | 9.3 | ·ì϶µÈ¼¶ | ÑϳÁ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | ÎÞ |
ÀûÓÃÄÑ¶È | µÍ | Óû§½»»¥ | ²»±ØÒª |
PoC/EXP | Òѹ«¿ª | ÔÚÒ°ÀûÓà | δ·¢ÏÖ |
LangflowÊÇÒ»¿î»ùÓÚLangChainµÄ¿ªÔ´µÍ´úÂëAIÀûÓñàÅÅÆ½Ì¨£¬Ö§³Öͨ¹ý¿ÉÊÓ»¯·½Ê½¹¹½¨LLM¹¤×÷Á÷£¨flows£©£¬¿í·ºÀûÓÃÓÚ¶Ô»°ÏµÍ³¡¢Êý¾Ý´¦Öü°×Ô¶¯»¯¹¤×÷³¡¾°¡£ÆäÖ÷ÌâÖ°ÄÜÔ̺¬½ÚµãʽÁ÷³ÌÉè¼Æ¡¢×é¼þÀ©´ó¡¢Ä£Ðͼ¯³É¼°API·þÎñ°ä²¼£¬ºÏÓÃÓÚAIÀûÓÿª·¢Óë¼±¾çÔÐ͹¹½¨¡£
2026Äê3ÔÂ23ÈÕ£¬±¦ÔËÀ³¹Ù·½ÍøÕ¾°²È«Ó¦¼±ÏìÓ¦ÖÐÐÄ£¨VSRC£©¼à²âµ½Langflow δÊÚȨԶ³Ì´úÂëÖ´Ðзì϶¡£¸Ã·ì϶λÓÚ/api/v1/build_public_tmp/{flow_id}/flow½Ó¿Ú£¬ÓÉÓڸýӿÚδ½øÐÐÉí·ÝÈÏÖ¤ÇÒÔÊÐí¹¥»÷Õßͨ¹ýdata²ÎÊýÌá½»¿É¿ØflowÊý¾Ý£¬µ¼Ö¶ñÒâPython´úÂë±»Ö±½Ó´«Èëexec()Ö´ÐÐÇÒ²»×ãÈκÎɳÏä¸ôÀë¡£¹¥»÷Õß½öÐè»ñÈ¡public flowµÄUUID²¢»ú¹Ø¶ñÒâÒªÇ󣬼´¿ÉÔÚ·þÎñÆ÷¶ËÖ´ÐÐËÁÒâϵͳºÅÁ»ñÈ¡·þÎñÆ÷ȨÏÞ¡¢¶ÁÈ¡»ò´Û¸ÄÃô¸ÐÊý¾Ý£¬²¢½øÒ»²½ºáÏòÒÆ¶¯¡£¸Ã·ì϶ӰÏìÁìÓò¹ã£¬·çÏÕ¼«¸ß£¬¿ÉÄܵ¼ÖÂÊý¾Ýй¶¡¢ÒµÎñϵͳʧÏÝ£¬ÉõÖÁÎ¥·´Êý¾Ý°²È«ÓëÒþÖԺϹæÒªÇó£¬¶ÔÆóÒµºÍÓû§Ôì³ÉÑϳÁ°²È«Íþв¡£
¶þ¡¢Ó°ÏìÁìÓò
Langflow <= 1.8.1
Èý¡¢°²È«´ëÊ©
3.1 Éý¼¶°æ±¾
ÏÂÔØÁ´½Ó£ºhttps://github.com/langflow-ai/langflow/releases/
3.2 һʱ´ëÊ©
ÔÝÎÞ¡£


¾©¹«Íø°²±¸11010802024551ºÅ