Sensitive Information Disclosure in IBM Langflow OSS
CVE-2026-101331
7.7HIGH
What is CVE-2026-101331?
A vulnerability in IBM Langflow OSS versions 1.0.0 through 1.12.2 permits remote authenticated attackers to access sensitive information due to inadequate protection of credentials. This issue may allow attackers to exploit the vulnerability to retrieve confidential data, highlighting the importance of secure credential management and prompt updates to the affected software.
Affected Version(s)
Langflow OSS 1.0.0 <= 1.12.2