Security CorporationEvent: September 8, 2026
IntegSec published a security advisory for CVE-2026-12940, which states that IBM Langflow OSS is vulnerable to unauthenticated remote code execution via environment variable injection.
Published
Signal category
Security Corporation
Quote
“CVE-2026-12940: IBM Langflow OSS Unauthenticated Remote Code Execution via Environment Variable Injection”
— IntegSec team
Company
IntegSec
Offensive security engineered for AI-powered systems and real-world threats
- Industry
- IT Services and IT Consulting
- Location
- Bethel, US
- Company size
- 17 employees
IntegSec provides offensive cybersecurity testing and threat simulations—self-serve and human-led agentic pentesting, traditional compliance pentests, red teaming, vulnerability assessments and PTaaS—to harden people, networks and applications (web, mobile, LLM) and reduce cyber risk for organizations.
Founded 2024