CyberRota Analysis
AI-GeneratedIBM Langflow OSS versions 1.0.0 to 1.11.2 are vulnerable to an authorization bypass that enables remote authenticated attackers to execute arbitrary code during the flow build process. This high-severity vulnerability poses significant risks to the integrity and security of applications utilizing these versions. Organizations using affected versions should prioritize immediate remediation to mitigate potential exploitation.
CVE
CVE-2026-19298
Severity
HIGH
CVSS
8.8
EPSS
0.49%
Original NVD Description
IBM Langflow OSS 1.0.0 through 1.11.2 could allow a remote authenticated attacker to execute arbitrary code due to an authorization bypass in the flow build process.
Related CVEs
Other vulnerabilities affecting the same vendor(s)