CVE-2026-17622: Langflow OSS is affected by arbitrary file read due to path traversal vulnerabilities in file and knowledge base components
IBM Langflow OSS 1.0.0 through 1.10.2 could allow a remote authenticated attacker to obtain sensitive information due to improper limitation of a pathname to a restricted directory.
Other sources
Langflow OSS could allow a remote authenticated attacker to obtain sensitive information due to improper limitation of a pathname to a restricted directory.
— IBM
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Langflow OSSto a version that resolves this vulnerability.Fixed in 1.10.3
Event History
Frequently Asked Questions
Which deployments are affected?
IBM Langflow OSS versions 1.0.0 through 1.10.2 are affected.
What access does an attacker need?
An attacker must be remotely reachable and authenticated with privileges sufficient to access the vulnerable file or knowledge base components. No user interaction is required.
What is the impact of successful exploitation?
Successful exploitation can allow an authenticated remote attacker to read sensitive information outside the intended restricted directory. The provided vector indicates confidentiality impact is high, with no integrity or availability impact.