CVE-2026-19304: Langflow is vulnerable to Server-Side Request Forgery due to missing or bypassable URL validation in multiple components
IBM Langflow OSS 1.0.0 through 1.11.2 could allow a remote authenticated attacker to obtain sensitive information from internal services due to a URL parser discrepancy.
Other sources
Langflow OSS could allow a remote authenticated attacker to obtain sensitive information from internal services due to a URL parser discrepancy.
— IBM
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Langflow OSSto a version that resolves this vulnerability.Fixed in 1.11.3
Event History
Frequently Asked Questions
Who can exploit this issue?
A remote attacker must be authenticated to Langflow OSS. The affected versions identified are 1.0.0 through 1.11.2.
What is the likely impact of successful exploitation?
An authenticated attacker could obtain sensitive information from internal services by exploiting a URL parser discrepancy. The vulnerability is rated high with a CVSS score of 7.7.
Is an affected default deployment vulnerable?
The available information does not state whether default configurations are affected or identify any configuration prerequisites beyond attacker authentication.