AUGUST 14, 2026
Live Feed
Back to database
Case File

CVE-2026-19297

CRITICAL · CVSS 9.1 EPSS 0.42%

Source: NVD + CISA KEV + EPSS · Published 2026-08-13 · Last synced 2026-08-14

CyberRota Analysis

AI-Generated

IBM Langflow OSS versions 1.0.0 through 1.9.6 are vulnerable to a critical security flaw that enables remote attackers to gain unauthorized access to user accounts by exploiting improper restrictions on excessive authentication attempts. Organizations using these versions should prioritize patching this vulnerability to prevent potential account takeovers and unauthorized access to sensitive data. Immediate action is recommended for all users of affected versions to mitigate the risk.

CVE
CVE-2026-19297
Severity
CRITICAL
CVSS
9.1
EPSS
0.42%

Original NVD Description

IBM Langflow OSS 1.0.0 through 1.9.6 could allow a remote attacker to obtain unauthorized access to user accounts due to improper restriction of excessive authentication attempts.