CVE-2026-93447: Langflow OSS is affected by multiple vulnerabilities
IBM Langflow OSS 1.0.0 through 1.12.2 could allow an attacker with access to the server secret and Redis write access to submit a malicious serialized cache value. When the value was retrieved, deserialization could have executed attacker-controlled code with the privileges of the service process.
Other sources
Langflow OSS could allow an attacker with access to the server secret and Redis write access to submit a malicious serialized cache value. When the value was retrieved, deserialization could have executed attacker-controlled code with the privileges of the service process.
— IBM
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Langflow OSSto a version that resolves this vulnerability.Fixed in 1.12.3
Event History
Frequently Asked Questions
What access does an attacker need to exploit this issue?
The attacker needs both access to the server secret and the ability to write to Redis. Exploitation also depends on the malicious serialized cache value being retrieved by Langflow OSS.
What level of access could successful exploitation provide?
Attacker-controlled code could execute with the privileges of the Langflow service process. The stated impact includes high confidentiality, integrity, and availability impact.
Which versions are identified as affected?
IBM Langflow OSS versions 1.0.0 through 1.12.2 are identified as affected.