Langflow

Langflow

108 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.29%
  • Veröffentlicht 05.08.2026 16:31:13
  • Zuletzt bearbeitet 06.08.2026 19:35:09

IBM Langflow OSS 1.0.0 through 1.10.3 Langflow could allow an authenticated attacker to read, modify, or expose sensitive host files via Docker-based MCP servers due to incomplete filtering of dangerous Docker volume-mount and device-mapping argument...

  • EPSS 0.3%
  • Veröffentlicht 05.08.2026 16:27:46
  • Zuletzt bearbeitet 06.08.2026 19:08:54

IBM Langflow OSS 1.0.0 through 1.10.3 contain an authentication bypass vulnerability in the Model Context Protocol (MCP) composer endpoint when mcp_composer_enabled=true (default) and projects are configured with auth_type=oauth .

  • EPSS 0.3%
  • Veröffentlicht 05.08.2026 16:25:39
  • Zuletzt bearbeitet 06.08.2026 19:27:33

IBM Langflow OSS 1.0.0 through 1.10.3 allows users to read arbitrary files from the server filesystem, including other users' uploaded documents, the JWT signing secret, the SQLite database, and process environment variables, by sending a crafted MCP...

  • EPSS 0.3%
  • Veröffentlicht 05.08.2026 16:24:43
  • Zuletzt bearbeitet 06.08.2026 19:01:53

IBM Langflow OSS 1.0.0 through 1.10.3 Langflow allows remote authenticated attackers to bypass localhost-only restrictions and write arbitrary MCP server configurations to IDE configuration files on the host system.

  • EPSS 0.35%
  • Veröffentlicht 30.07.2026 19:01:50
  • Zuletzt bearbeitet 04.08.2026 20:14:10

IBM Langflow OSS 1.0.0 through 1.10.0 could allow a remote attacker to inject arbitrary code on the system, due to the improper control of user input code.

  • EPSS 0.21%
  • Veröffentlicht 30.07.2026 18:38:32
  • Zuletzt bearbeitet 04.08.2026 20:14:38

IBM Langflow OSS 1.0.0 through 1.10.1 can allow an attacker to access another user's private vector documents by creating their own flow with matching Chroma persist_directory and collection_name values. The attacker receives exact victim content in ...

  • EPSS 0.39%
  • Veröffentlicht 30.07.2026 16:51:24
  • Zuletzt bearbeitet 04.08.2026 20:18:37

IBM Langflow OSS 1.0.0 through 1.8.4 contains multiple broken access control vulnerabilities in its file handling API that allow unauthorized access to user files.The /api/v1/files/images/{flow_id}/{file_name} endpoint does not enforce authentication...

  • EPSS 0.29%
  • Veröffentlicht 30.07.2026 16:48:36
  • Zuletzt bearbeitet 04.08.2026 20:15:08

IBM Langflow OSS 1.0.0 through 1.10.1 contains an improper input validation vulnerability in the PythonREPL sandbox implementation.

  • EPSS 0.42%
  • Veröffentlicht 30.07.2026 16:45:49
  • Zuletzt bearbeitet 04.08.2026 20:16:59

IBM Langflow OSS 1.0.0 through 1.10.1 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot dot " sequences ( /.. /) to view arbitrary files on the system.

  • EPSS 0.22%
  • Veröffentlicht 30.07.2026 16:44:39
  • Zuletzt bearbeitet 04.08.2026 20:19:44

IBM Langflow OSS 1.0.0 through 1.10.1 allows authenticated users to access and manipulate other users' build jobs through improper access control on log retrieval and unauthenticated build endpoints.