Description
IBM Langflow OSS 1.0.0 through 1.10.0 allows users with Redis access to execute arbitrary code with full application privileges, compromising all secrets, data, and system integrity.
Published: 2026-06-30
Score: 9.8 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

Insecure deserialization occurs in IBM Langflow OSS 1.0.0 through 1.10.0 when Redis is used as a cache backend. The weakness (CWE-502) permits malicious data to be deserialized, allowing an attacker to execute arbitrary code with the application's full privileges. This results in complete compromise of secrets, data, and overall system integrity.

Affected Systems

Affected products are IBM Langflow OSS, specifically all releases from 1.0.0 up to and including 1.10.0. These versions are documented in the vendor’s product listings and the advisory notes that the vulnerability exists in that entire range.

Risk and Exploitability

The CVSS score of 9.8 indicates critical severity. While a concrete EPSS score is not available, the lack of a recorded EPSS does not diminish the risk; attackers bearing access to the Redis instance can exploit the flaw without additional prerequisites. The vulnerability is not yet listed in CISA’s KEV catalog, but the combination of a high CVSS and the need for only Redis connectivity makes exploitation likely on exposed or compromised Redis hosts. Once exploited, the attacker gains full application control.

Generated by OpenCVE AI on June 30, 2026 at 20:51 UTC.

Remediation

Vendor Solution

IBM strongly recommends addressing the vulnerability now by upgrading Langflow OSS to version 1.10.1 https://pypi.org/project/langflow/


OpenCVE Recommended Actions

  • Upgrade IBM Langflow OSS to version 1.10.1 as recommended by IBM.
  • Restrict Redis access to trusted hosts or networks, ensuring that only authorized application components can connect to the cache server.
  • If possible, disable or isolate any features that allow arbitrary deserialization of user-supplied data, and implement strict input validation around Redis entries.

Generated by OpenCVE AI on June 30, 2026 at 20:51 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 01 Jul 2026 18:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 30 Jun 2026 19:30:00 +0000

Type Values Removed Values Added
Description IBM Langflow OSS 1.0.0 through 1.10.0 allows users with Redis access to execute arbitrary code with full application privileges, compromising all secrets, data, and system integrity.
Title Insecure Deserialization in Redis Cache Backend
First Time appeared Ibm
Ibm langflow Oss
Weaknesses CWE-502
CPEs cpe:2.3:a:ibm:langflow_oss:1.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:langflow_oss:1.10.0:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm langflow Oss
References
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Subscriptions

Ibm Langflow Oss
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-07-01T17:27:39.903Z

Reserved: 2026-05-05T14:14:39.413Z

Link: CVE-2026-7871

cve-icon Vulnrichment

Updated: 2026-07-01T17:27:37.116Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-01T00:00:16Z

Weaknesses
  • CWE-502

    Deserialization of Untrusted Data