CVE-2026-78569
גבוהה 8.8
תיאור (מקור, אנגלית)
IBM Langflow OSS 1.0.0 through 1.11.5 could allow an authenticated attacker to execute arbitrary code due to an incomplete denylist in the security scanner.
מדדים
- CVSS 3.1
-
8.8 (HIGH)
מקור הציון: CNA
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - EPSS — סבירות ניצול
- 1% (אחוזון 000) נכון ל-4/10/2026
- CWE
- CWE-78
מוצרים מושפעים
langflow: langflow
קישורים
- https://www.ibm.com/support/pages/node/7286666 Vendor Advisory