SEPTEMBER 8, 2026
Live Feed
Back to database
Case File

CVE-2026-18899

HIGH · CVSS 7.5 EPSS 0.46%

Source: NVD + CISA KEV + EPSS · Published 2026-08-28 · Last synced 2026-09-08

CyberRota Analysis

AI-Generated

IBM Langflow OSS versions 1.0.0 to 1.11.1 are vulnerable to a path traversal flaw that enables remote attackers to read arbitrary files on the server. This vulnerability poses a significant risk as it could lead to unauthorized access to sensitive information. Organizations using these versions should prioritize patching to mitigate potential data breaches.

CVE
CVE-2026-18899
Severity
HIGH
CVSS
7.5
EPSS
0.46%

Original NVD Description

IBM Langflow OSS 1.0.0 through 1.11.1 could allow a remote attacker to read arbitrary files due to path traversal.

Related CVEs

Other vulnerabilities affecting the same vendor(s)