Description
IBM Langflow OSS 1.0.0 through 1.11.5 is vulnerable to server-side request forgery (SSRF). This may allow an unauthenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.
Published: 2026-09-14
Score: 6.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Server‑Side Request Forgery (SSRF) enabling unauthenticated attackers to send unauthorized internal requests and gather sensitive network information
Action: Immediate Patch
AI Analysis

Impact

IBM Langflow OSS versions 1.0.0 through 1.11.5 do not enforce egress filtering on server‑side URL fetches, creating a server‑side request forgery flaw. The vulnerability permits an unauthenticated attacker to trigger the application to retrieve arbitrary URLs, allowing access to internal network resources, reconnaissance, and potential escalation. Successful exploitation could disclose sensitive data from internal services and enable further attacks such as credential theft or privilege escalation, compromising confidentiality, integrity, and availability of the affected environment.

Affected Systems

The affected products are IBM 1.0.0 up to and including 1.11.5 as identified by the vendor's CNA OSS versions 1.0.0 through 1.11.5 are vulnerable to SSRF via missing egress validation, allowing an unauthenticated attacker to instruct the server to perform arbitrary URL fetches, which can lead to internal network enumeration or facilitate further attacks such as credential theft.

Risk and Exploitability

The CVSS score of 6.5 is risk; however, the EPSS score is < 1% and it is not listed in the CISA KEV catalog, indicating a low likelihood of exploitation. The attack vector is an SSRF scenario where an attacker supplies a malicious URL to the server‑side URL fetching component, leading to unauthorized internal network requests.

Generated by OpenCVE AI on September 20, 2026 at 22:36 UTC.

Remediation

Vendor Solution

IBM strongly recommends addressing the vulnerability now by upgrading Langflow OSS to version 1.11.6


OpenCVE Recommended Actions

  • Upgrade IBM Langflow OSS to version 1.11.6 or later.
  • If upgrading is not immediately feasible, implement strict outbound network filtering to restrict the application’s egress to only necessary destinations.
  • Configure server‑side URL validation to accept only whitelisted domains or IP ranges, rejecting any non‑approved request.

Generated by OpenCVE AI on September 20, 2026 at 22:36 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 15 Sep 2026 18:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Description IBM Langflow OSS 1.0.0 through 1.11.5 is vulnerable to server-side request forgery (SSRF). This may allow an unauthenticated attacker to send unauthorized requests from the system, potentially leading to network enumeration or facilitating other attacks.
Title Langflow is vulnerable to server-side request forgery due to missing egress validation on server-side URL fetches
First Time appeared Ibm
Ibm langflow Oss
Weaknesses CWE-918
CPEs cpe:2.3:a:ibm:langflow_oss:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:langflow_oss:1.11.5:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm langflow Oss
References
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N'}


Subscriptions

Ibm Langflow Oss
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-09-15T17:31:48.342Z

Reserved: 2026-06-19T22:35:56.228Z

Link: CVE-2026-12767

cve-icon Vulnrichment

Updated: 2026-09-15T17:27:06.015Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-14T21:17:00.847

Modified: 2026-09-16T19:24:58.293

Link: CVE-2026-12767

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T22:45:05Z

Weaknesses
  • CWE-918

    Server-Side Request Forgery (SSRF)