VulnWatch VulnWatch
← Back to dashboard
Critical nvd · CVE-2026-7874

CVE-2026-7874: IBM Langflow OSS 1.0.0 through 1.10.0 Langflow could allow disclosure of all stored credentials due to the use of a weak

Published Jun 30, 2026 CVSS 9.1

IBM Langflow OSS 1.0.0 through 1.10.0 Langflow could allow disclosure of all stored credentials due to the use of a weak and reversible key derivation mechanism for encryption at rest.

Affected AI Products

langflow
Get the weekly digest. Every Monday: top AI security stories of the week. Free.