Information Disclosure Vulnerability in IBM Langflow OSS
CVE-2026-103360
8.1HIGH
What is CVE-2026-103360?
A vulnerability in IBM Langflow OSS versions 1.0.0 to 1.12.2 allows a remote authenticated attacker to exploit improper pathname restrictions, potentially leading to unauthorized access to sensitive information stored in restricted directories. This flaw emphasizes the importance of implementing stringent access controls and monitoring for unauthorized data exposure.
Affected Version(s)
Langflow OSS 1.0.0 <= 1.12.2