CVE-2026-18545: Langflow is affected by multiple authentication bypass, path traversal, authorization, and server-side request forgery vulnerabilities
IBM Langflow OSS 1.0.0 through 1.11.1 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.
Other sources
Langflow is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.
— IBM
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
langflow OSSto a version that resolves this vulnerability.Fixed in 1.11.2 - Compensating control
Mitigate SSRF risk by restricting outbound network access from the Langflow environment so it cannot reach internal networks/services for unauthorized requests.
Event History
Frequently Asked Questions
Which versions are affected?
IBM Langflow OSS versions 1.0.0 through 1.11.1 are affected.
Does exploitation require authentication or user interaction?
An attacker must be authenticated to exploit the issue. No user interaction is required.
What could an attacker do after exploiting this issue?
An attacker may be able to cause the system to send unauthorized requests, enabling network enumeration or facilitating further attacks.