Langflow

Langflow

108 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.23%
  • Veröffentlicht 30.06.2026 20:17:27
  • Zuletzt bearbeitet 11.08.2026 23:17:28

IBM Langflow OSS 1.0.0 through 1.10.0 voice mode contains improper shared-state handling that allows reuse of API clients across tenant boundaries. An authenticated attacker can manipulate cache state to cause requests from other users to be processe...

  • EPSS 0.15%
  • Veröffentlicht 30.06.2026 20:17:27
  • Zuletzt bearbeitet 02.07.2026 16:39:09

IBM Langflow OSS 1.0.0 through 1.9.3 contains a Server-Side Request Forgery (SSRF) vulnerability in the URL component ( src/lfx/src/lfx/components/data_source/url.py ) due to a Time-of-Check/Time-of-Use (TOCTOU) race condition that can be exploited v...

  • EPSS 0.25%
  • Veröffentlicht 30.06.2026 20:17:27
  • Zuletzt bearbeitet 02.07.2026 16:32:44

IBM Langflow OSS 1.0.0 through 1.9.6 contains a missing authentication vulnerability in /api/v1/build_public_tmp/ endpoints that allows an unauthenticated attacker to read build event data or cancel jobs using a valid job identifier, resulting in inf...

  • EPSS 0.21%
  • Veröffentlicht 30.06.2026 20:17:27
  • Zuletzt bearbeitet 02.07.2026 15:41:56

IBM Langflow OSS 1.0.0 through 1.9.6 contains a Server-Side Request Forgery (SSRF). The legacy RSSReaderComponent in rss.py and SearXNG component in searxng.py make unvalidated HTTP requests to user-controlled URLs, bypassing SSRF protections introdu...

  • EPSS 0.2%
  • Veröffentlicht 30.06.2026 20:17:26
  • Zuletzt bearbeitet 02.07.2026 17:00:48

IBM Langflow OSS 1.0.0 through 1.9.3 contains a Server-Side Request Forgery (SSRF) protection bypass vulnerability in the API Request component. An authenticated attacker with low-level privileges (flow author role) can bypass SSRF protections by ena...

  • EPSS 0.36%
  • Veröffentlicht 30.06.2026 20:17:26
  • Zuletzt bearbeitet 02.07.2026 17:03:09

IBM Langflow OSS 1.0.0 through 1.9.3 allows an attacker to read every secret available to the Langflow process, read and modify every flow, conversation, message, file upload, and saved component in the Langflow database, can connect to internal serv...

  • EPSS 0.33%
  • Veröffentlicht 30.06.2026 19:16:25
  • Zuletzt bearbeitet 02.07.2026 18:19:34

IBM Langflow OSS 1.0.0 through 1.9.6 could allow unauthenticated attackers to access protected MCP project resources and execute MCP operations due to improper authorization enforcement in the Streamable MCP transport endpoint.

  • EPSS 0.42%
  • Veröffentlicht 30.06.2026 19:15:45
  • Zuletzt bearbeitet 02.07.2026 19:15:45

IBM Langflow OSS 1.0.0 through 1.10.0 could allow arbitrary code execution due to improper validation of flow nodes with missing or empty component type fields.

  • EPSS 0.45%
  • Veröffentlicht 30.06.2026 19:14:39
  • Zuletzt bearbeitet 02.07.2026 19:15:04

IBM Langflow OSS 1.0.0 through 1.10.0 allows users with Redis access to execute arbitrary code with full application privileges, compromising all secrets, data, and system integrity.

  • EPSS 0.34%
  • Veröffentlicht 30.06.2026 19:13:16
  • Zuletzt bearbeitet 02.07.2026 19:15:22

IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated attackers to execute arbitrary OS commands and read sensitive files including credentials, enabling complete system compromise and lateral movement.