CyberRota Analysis
AI-GeneratedIBM Langflow OSS versions 1.0.0 through 1.10.3 are vulnerable to server-side request forgery (SSRF) due to inadequate protection mechanisms. This vulnerability could allow attackers to manipulate server requests, potentially leading to unauthorized access to internal resources. Organizations using affected versions of Langflow should prioritize patching to mitigate the risk of exploitation.
CVE
CVE-2026-7657
Severity
MEDIUM
CVSS
6.5
EPSS
0.20%
Original NVD Description
IBM Langflow OSS 1.0.0 through 1.10.3 Langflow could allow server-side request forgery (SSRF) due to incomplete and ineffective SSRF protection enforcement.
Related CVEs
Other vulnerabilities affecting the same vendor(s)