Impact
The vulnerability allows an attacker to execute arbitrary code on the server by bypassing the MCP server configuration validator due to incomplete validation enforcement on configuration files. This weakness is identified as CWE-20 (Impaired Input Validation) and could be introduced via the file upload API, potentially compromising confidentiality, integrity, and availability of the affected system.
Affected Systems
The vulnerability affects IBM Langflow OSS versions 1.0.0 through 1.10.0. Affected users should update to version 1.10.1 or later. The affected product is IBM Langflow OSS, an open‑source language model workflow tool.
Risk and Exploitability
The CVSS score of 8.8 indicates a high severity risk. The EPSS score of less than 1% indicates a low probability of exploitation, but the attack vector is likely through the file upload API, allowing an attacker to supply a crafted configuration file that is not properly validated. The vulnerability is not listed in the CISA KEV catalog, but the potential for remote code execution warrants prompt remediation.
OpenCVE Enrichment