Skip to content

CVE Request: Unresponsive maintainer — GHSA-mffc-w2jf-c592 (Langflow) #8080

Description

@manus-use

CVE Assignment Request

Advisory: GHSA-mffc-w2jf-c592 (private, submitted to langflow-ai/langflow)
Severity: Critical (CVSS 9.8)
Affected package: langflow (PyPI)
CWE: CWE-94

Timeline

  • 2026-02-21: Advisory submitted via private vulnerability reporting
  • 2026-06-20 (today): No response from maintainers — 119 days, zero activity

Request

Requesting CVE assignment per CNA rules Section 4.2. The maintainer has not acknowledged or responded to this advisory in 4 months. GitHub CNA can view full details at GHSA-mffc-w2jf-c592.

Thank you.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions