Unrated severityNVD Advisory· Published Jul 30, 2026· Updated Jul 31, 2026
Langflow is affected by exposed credentials due to multiple unauthenticated and insufficiently authorized API endpoints
CVE-2026-12945
Description
IBM Langflow OSS 1.0.0 through 1.10.1 allows authenticated users to access and manipulate other users' build jobs through improper access control on log retrieval and unauthenticated build endpoints.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1- Range: 1.0.0 - 1.10.1
Patches
Vulnerability mechanics
References
1- www.ibm.com/support/pages/node/7279994mitrevendor-advisorypatch
News mentions
0No linked articles in our index yet.