CyberRota Analysis
AI-GeneratedIBM Langflow OSS versions 1.0.0 to 1.11.1 are vulnerable to a path traversal flaw that enables remote attackers to read arbitrary files on the server. This vulnerability poses a significant risk as it could lead to unauthorized access to sensitive information. Organizations using these versions should prioritize patching to mitigate potential data breaches.
CVE
CVE-2026-18899
Severity
HIGH
CVSS
7.5
EPSS
0.46%
Original NVD Description
IBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote attacker to read arbitrary files due to path traversal.
Related CVEs
Other vulnerabilities affecting the same vendor(s)