GPT-5.6 (Sol / Terra / Luna) is now evaluated on TrustVector โ€” with day-1 independent verification, incl. METR's benchmark-cheating findings.

Read the evaluation
Evaluation record ยท langflow

Langflow

v1.10.1

IBM (formerly DataStax/Logspace)

Agentvisuallow-codeopen-sourcesecurity-incidents
77
Strong
About This Agent

Visual builder for LangChain-based AI apps and agents; owned by IBM via the Feb 2025 DataStax acquisition. SECURITY: recurring CVEs - CVE-2025-3248 (CVSS 9.8 unauthenticated RCE, fixed in 1.3.0, CISA KEV, Flodrix botnet), CVE-2025-34291 (account takeover/RCE), CVE-2026-33017 (second 9.8 unauthenticated RCE, exploited in 2026 for cryptomining, fixed in 1.9.0), CVE-2026-55255 (IDOR, fixed in 1.9.2), CVE-2026-5027 (path traversal). Upgrade to 1.10.1+; never expose unauthenticated.

Last Evaluated: July 9, 2026
Official Website

Trust Vector Analysis

Dimension Breakdown

๐Ÿš€Performance & Reliability
+
visual workflow execution

Workflow execution testing

Evidence
Langflow UI โ€” Drag-and-drop interface for building LangChain flows
highVerified: 2026-07-09
langchain compatibility

Compatibility testing

Evidence
LangChain Integration โ€” Built on LangChain with access to all components
highVerified: 2026-07-09
rapid prototyping

Development speed assessment

Evidence
Low-Code Development โ€” Fast prototyping with pre-built templates and components
highVerified: 2026-07-09
llm support

LLM integration testing

Evidence
Model Support โ€” Supports OpenAI, Anthropic, Google, local models via LangChain
highVerified: 2026-07-09
error handling

Error recovery testing

Evidence
Flow Execution โ€” Basic error handling, visual debugging available
mediumVerified: 2026-07-09
latency

Performance monitoring

Evidence
Performance โ€” Performance depends on LangChain components and LLM calls
mediumVerified: 2026-07-09
๐Ÿ›ก๏ธSecurity
+
api key management

Security configuration review

Evidence
Credentials โ€” Environment variable-based credential management
CVE-2025-34291 โ€” CVE-2025-34291: account takeover / remote code execution vulnerability in Langflow
highVerified: 2026-07-09
self hosting

Deployment security assessment

Evidence
Deployment โ€” Self-hosting with Docker and cloud deployment options
CISA KEV / Flodrix Botnet Exploitation โ€” Internet-exposed self-hosted Langflow instances were actively exploited via CVE-2025-3248 (added to CISA KEV 2025-05-05; exploited by the Flodrix botnet)
Orca Security / Trend Micro - CVE-2026-33017 exploitation โ€” CVE-2026-33017 (CVSS 9.8 unauthenticated RCE via /api/v1/build_public_tmp) actively exploited in spring 2026 against exposed instances to deploy XMRig cryptominers; affects <=1.8.2, fixed in 1.9.0
highVerified: 2026-07-09
data privacy

Data flow analysis

Evidence
Self-Hosted Option โ€” Data privacy depends on deployment and LLM choices
mediumVerified: 2026-07-09
open source

Open source assessment

Evidence
GitHub โ€” MIT license, 151k+ stars, open source community
highVerified: 2026-07-09
authentication

Authentication assessment

Evidence
Security Features โ€” Basic auth available, enterprise features in DataStax version
CVE-2025-3248 โ€” CVE-2025-3248: CVSS 9.8 unauthenticated remote code execution via /api/v1/validate/code; fixed in 1.3.0; added to CISA KEV 2025-05-05 and exploited by the Flodrix botnet
CVE-2026-33017 โ€” CVE-2026-33017: second CVSS 9.8 unauthenticated RCE (public flow-building API endpoint), actively exploited in spring 2026 within 20 hours of advisory publication; fixed in 1.9.0 (1.8.2 widely reported as patched but still vulnerable)
GHSA-qrpv-q767-xqq2 (CVE-2026-55255) โ€” CVE-2026-55255: IDOR in /api/v1/responses lets authenticated attackers execute other users' flows; fixed in 1.9.2
highVerified: 2026-07-09
๐Ÿ”’Privacy & Compliance
+
data retention

Privacy architecture review

Evidence
Data Storage โ€” Flow definitions and logs stored in configured database
mediumVerified: 2026-07-09
gdpr compliance

Compliance capabilities assessment

Evidence
Self-Hosted โ€” GDPR compliance possible with self-hosted deployment
mediumVerified: 2026-07-09
local deployment

Deployment options assessment

Evidence
Deployment Options โ€” Full local deployment with pip or Docker
highVerified: 2026-07-09
llm data sharing

Data flow analysis

Evidence
LLM Integration โ€” Data sent to LLM providers unless using local models
mediumVerified: 2026-07-09
flow export

Data portability assessment

Evidence
Export Features โ€” Export flows as JSON for version control and migration
highVerified: 2026-07-09
๐Ÿ‘๏ธTrust & Transparency
+
documentation quality

Documentation completeness review

Evidence
Langflow Docs โ€” Good documentation with tutorials and component guides
highVerified: 2026-07-09
visual debugging

Debugging tools assessment

Evidence
UI Features โ€” Visual flow debugging with step-by-step execution
highVerified: 2026-07-09
open source

Open source assessment

Evidence
GitHub โ€” MIT license, 151k+ stars, very active community (repo active as of July 2026)
highVerified: 2026-07-09
community support

Community engagement analysis

Evidence
Community โ€” Active Discord and GitHub discussions
highVerified: 2026-07-09
โš™๏ธOperational Excellence
+
ease of use

Usability assessment

Evidence
UI/UX โ€” Intuitive drag-and-drop interface for non-developers
highVerified: 2026-07-09
scalability

Scalability testing

Evidence
Deployment โ€” Can scale with containerization, limited production features
mediumVerified: 2026-07-09
cost predictability

Pricing model analysis

Evidence
Open Source โ€” Free MIT license, costs only for infrastructure and LLMs
highVerified: 2026-07-09
monitoring

Monitoring features assessment

Evidence
Monitoring Features โ€” Basic logging, limited production monitoring
mediumVerified: 2026-07-09
production readiness

Production readiness assessment

Evidence
Deployment Guide โ€” Designed for prototyping, production use requires hardening
mediumVerified: 2026-07-09
template library

Template availability assessment

Evidence
Templates โ€” Pre-built templates for common use cases
highVerified: 2026-07-09
Strengths
  • +Intuitive visual drag-and-drop interface for LLM workflows
  • +Open source (MIT) with very active community (151k+ stars)
  • +Built on LangChain ecosystem with access to all components
  • +Excellent for rapid prototyping and experimentation
  • +Low-code approach makes AI accessible to non-developers
  • +Free to use with flexible deployment options
Limitations
  • !Limited production-grade features (auth, monitoring, scaling)
  • !Performance overhead from visual abstraction layer
  • !Primarily designed for prototyping, not enterprise deployment
  • !Security features less mature than enterprise platforms
  • !Limited control compared to code-based implementations
  • !Debugging complex flows can be challenging despite visual interface
  • !Recurring critical CVE pattern: CVE-2025-3248 (unauthenticated RCE, CISA KEV, Flodrix botnet), CVE-2025-34291 (account takeover/RCE), CVE-2026-33017 (second unauthenticated RCE, actively exploited spring 2026 for cryptomining), CVE-2026-55255 (IDOR) and CVE-2026-5027 (path traversal); upgrade to 1.10.1+ and never expose unauthenticated instances
Metadata
license: MIT
supported models
0: OpenAI
1: Anthropic
2: Google
3: Cohere
4: HuggingFace
5: Local LLMs
programming languages
0: Python
1: TypeScript (UI)
deployment type: Self-hosted (pip, Docker) or cloud
tool support
0: LangChain tools
1: Custom Python components
pricing model: Free open source (IBM/DataStax offers managed enterprise version)
github stars: 151000+
first release: 2023
ui framework: React-based visual interface
langchain version: Compatible with LangChain ecosystem
version: 1.10.1 (June 29, 2026)
pricing: Free (open source), Cloud from $0/hour (usage-based)

Use Case Ratings

customer support

Good for prototyping support bots with visual design

code generation

Can build code agents but limited specialized features

research assistant

Good for RAG-based research workflows with visual design

data analysis

Can integrate analysis tools via LangChain components

content creation

Suitable for building content generation workflows

education

Easy for educators to build tutoring systems visually

healthcare

Prototyping viable, production needs security hardening

financial analysis

Self-hosted option possible but limited enterprise features

legal compliance

Good for building document analysis workflows

creative writing

Suitable for creative workflow prototyping