← Voltar à pesquisa de CVEs

CVE-2026-7664

IBM Langflow OSS

Descrição

IBM Langflow OSS 1.0.0 through 1.8.4 could allow unauthenticated attackers to access protected MCP project resources and execute MCP operations due to improper authorization enforcement in the Streamable MCP transport endpoint.

CVSS 9.8EPSS 0.498%Risco 1.02
Ver fonte
Publicação
2026-06-22 16:16:41
Versões afetadas
<=1.8.4
Tipo
Software crítico
Vetor
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H