Impact
IBM Langflow OSS up to version 1.10.2 contains a path traversal flaw in the file and knowledge base components that allows an authenticated attacker to craft URL requests with "../" sequences and retrieve arbitrary files on the system. This vulnerability exposes sensitive configuration, credential, or proprietary data, violating confidentiality and potentially enabling further compromise. The weakness is identified as CWE-22.
Affected Systems
The affected product is IBM Langflow OSS. Versions ranging from 1.0.0 through 1.10.2 are vulnerable. The most recent release that fixes the issue is 1.10.3, which eliminates the traversal vector.
Risk and Exploitability
The CVSS score of 6.5 indicates a moderate level of risk, while the EPSS score is not available and the vulnerability is not listed in the CISA KEV catalog. Exploitation requires legitimate authentication to the application, after which an attacker can traverse directories by sending crafted requests. Because of the authentication prerequisite, the threat is somewhat constrained, but the potential to read arbitrary files still makes the risk significant for environments where sensitive data resides on the same filesystem or where the application runs with elevated privileges.
OpenCVE Enrichment