SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-19304

HIGH · CVSS 7.7 EPSS 0.31%

Source: NVD + CISA KEV + EPSS · Published 2026-09-04 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

IBM Langflow OSS versions 1.0.0 to 1.11.2 are vulnerable to a URL parser discrepancy that enables remote authenticated attackers to access sensitive information from internal services. This vulnerability poses a significant risk to organizations using affected versions, as it could lead to unauthorized data exposure. Organizations leveraging IBM Langflow OSS should prioritize patching or mitigating this vulnerability to protect their internal data.

CVE
CVE-2026-19304
Severity
HIGH
CVSS
7.7
EPSS
0.31%

Original NVD Description

IBM Langflow OSS 1.0.0 through 1.11.2 could allow a remote authenticated attacker to obtain sensitive information from internal services due to a URL parser discrepancy.

Related CVEs

Other vulnerabilities affecting the same vendor(s)