← Retour à la recherche de CVE

CVE-2026-7872

IBM Langflow OSS

Description

IBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to read arbitrary files including the JWT signing key and forge authentication tokens for any user.

CVSS 7.5EPSS 0.363%Risque 0.77
Voir la source
Publication
2026-07-17 20:17:30
Versions concernées
<=1.10.0
Type
Logiciel critique
Dernière modification
2026-07-20 17:59:05
Vecteur
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Systèmes d’exploitation
Windows; MacOS; Linux