Improper Access Control in IBM Langflow OSS Allows Data Exposure
CVE-2026-97680
8.3HIGH
What is CVE-2026-97680?
IBM Langflow OSS versions 1.0.0 through 1.12.2 are affected by an improper access control vulnerability within the vertex result caching subsystem. This flaw may allow an authenticated remote attacker to gain unauthorized access to sensitive information or to inject malicious data. It's essential for users of affected versions to review the advisory and apply necessary patches to safeguard their systems.
Affected Version(s)
Langflow OSS 1.0.0 <= 1.12.2