QSearchQSearch

CVE-2026-7787

7.5 HIGH

IBM Langflow OSS 1.0.0 through 1.9.1 could allow an authenticated user to read or modify sensitive information by bypassing authenticatio...

Published: 2026-06-11 · Last updated: 2026-06-11

Severity and scoring

CVSS
7.5 HIGH
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CWE
CWE-639

Description

IBM Langflow OSS 1.0.0 through 1.9.1 could allow an authenticated user to read or modify sensitive information by bypassing authentication using insecure direct object references.

Source: NVD

References

Related CVEs

Same CWE

  • CVE-2026-47238 ClipBucket v5 is an open source video sharing platform (6.5 MEDIUM)
  • CVE-2026-47189 Quest Bot is an opensource modern Discord Bot built for moderation, utilities and support
  • CVE-2026-8406 openSIS Classic 9.3 contains an insecure direct object reference vulnerability in the messaging module
  • CVE-2026-6976 GitLab has remediated an issue in GitLab CE/EE affecting all versions from 15.9 before 18.10.8, 18.11 before 18.11.5, and 19.0 before 19.... (3.7 LOW)
  • CVE-2026-6552 GitLab has remediated an issue in GitLab EE affecting all versions from 15.5 before 18.10.8, 18.11 before 18.11.5, and 19.0 before 19.0.2... (8.7 HIGH)