SEPTEMBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-13446

CRITICAL · CVSS 9.8 EPSS 0.23%

Source: NVD + CISA KEV + EPSS · Published 2026-07-17 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

IBM Langflow OSS versions 1.0.0 to 1.10.1 are vulnerable due to hard-coded credentials that can be exploited for unauthorized access and data breaches. The presence of these credentials poses a critical security risk, potentially allowing attackers to compromise authentication and communication channels. Organizations using affected versions should prioritize immediate remediation to mitigate the risk of exploitation.

CVE
CVE-2026-13446
Severity
CRITICAL
CVSS
9.8
EPSS
0.23%

Original NVD Description

IBM Langflow OSS 1.0.0 through 1.10.1 contains hard-coded credentials, such as a password or cryptographic key, which it uses for its own inbound authentication, outbound communication to external components, or encryption of internal data.

Related CVEs

Other vulnerabilities affecting the same vendor(s)