CyberRota Analysis
AI-GeneratedIBM Langflow OSS versions 1.0.0 to 1.10.0 are vulnerable due to a flaw in the parameter filtering mechanism of the `apply_tweaks()` function, allowing authenticated users to manipulate component parameters at runtime via the API. This could lead to unauthorized access or modification of application behavior, posing significant risks to system integrity. Organizations using affected versions should prioritize remediation to mitigate potential exploitation.
Original NVD Description
IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated users to override component parameters at runtime via the API. A critical security flaw exists in the parameter filtering mechanism within the `apply_tweaks()` function.
Related CVEs
Other vulnerabilities affecting the same vendor(s)