Improper Authentication in IBM Langflow OSS Affects Multiple Versions
CVE-2026-18891
8.2HIGH
What is CVE-2026-18891?
IBM Langflow OSS versions from 1.0.0 to 1.11.1 are susceptible to a vulnerability that allows remote attackers to execute arbitrary flows. This occurs due to improper authentication mechanisms, potentially leading to unauthorized access to sensitive data. Ensuring that your systems are updated and that applicable patches are applied is crucial to mitigate these risks.
Affected Version(s)
Langflow OSS 1.0.0 <= 1.11.1