AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-7657

MEDIUM · CVSS 6.5 EPSS 0.20%

Source: NVD + CISA KEV + EPSS · Published 2026-08-05 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

IBM Langflow OSS versions 1.0.0 through 1.10.3 are vulnerable to server-side request forgery (SSRF) due to inadequate protection mechanisms. This vulnerability could allow attackers to manipulate server requests, potentially leading to unauthorized access to internal resources. Organizations using affected versions of Langflow should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-7657
Severity
MEDIUM
CVSS
6.5
EPSS
0.20%

Original NVD Description

IBM Langflow OSS 1.0.0 through 1.10.3 Langflow could allow server-side request forgery (SSRF) due to incomplete and ineffective SSRF protection enforcement.

Related CVEs

Other vulnerabilities affecting the same vendor(s)