Impact
IBM Langflow OSS versions 1.0.0 through 1.11.5 contain a server‑side request forgery flaw. The application accepts arbitrary URLs for server‑side fetches without validating the target, allowing an attacker to make the server contact arbitrary hosts. This can lead to internal network probing, data exfiltration. The vulnerability is classified as SSRF and can threaten confidentiality and integrity of internal resources.
Affected Systems
The issue affects IBM's Langflow OSS building tool. Any installation of Langflow OSS version 1.0.0 through 1.11.5 is vulnerable. The fix is available in 1.11.6.
Risk and Exploitability
The combined CVSS score is 7.5, indicating a high impact. EPSS is not available, and the vulnerability is not listed in the CISA KEV catalog, so current exploitation probability is unknown. The flaw can be exploited via the application's URL fetch functionality over HTTP or HTTPS. An attacker who can supply a crafted URL can cause the server to reach internal endpoints and may harvest sensitive data or trigger actions in services that the server can access. The likely attack vector is through any interface that permits arbitrary URL input.
OpenCVE Enrichment