CVE-2026-18545: Langflow is affected by multiple authentication bypass, path traversal, authorization, and server-side request forgery vulnerabilities
IBM Langflow OSS 1.0.0 through 1.11.1 is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.
Other sources
Langflow is vulnerable to server-side request forgery (SSRF). This may allow an authenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.
— IBM
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Langflow OSSto a version that resolves this vulnerability.Fixed in 1.11.2
Event History
Frequently Asked Questions
Which versions are affected?
IBM Langflow OSS versions 1.0.0 through 1.11.1 are affected.
Does exploitation require authentication or user interaction?
An attacker must be authenticated to exploit the issue. No user interaction is required.
What could an attacker do after exploiting this issue?
An attacker may be able to cause the system to send unauthorized requests, enabling network enumeration or facilitating further attacks.