high · 7.1Automated intelligenceCVE-2026-12945

langflow-ai / Langflow

CVE-2026-12945: Langflow

IBM Langflow OSS 1.0.0 through 1.10.1 allows authenticated users to access and manipulate other users' build jobs through improper access control on log retrieval and unauthenticated build endpoints.

software-vulnerability

Record details

Identifiers
CVE-2026-12945, psirt@us.ibm.com

Severity

CVSS
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:L
Authority
psirt@us.ibm.com

Sources