VulnWatch VulnWatch
← Back to dashboard
High nvd · CVE-2026-7754

CVE-2026-7754: IBM Langflow OSS 1.0.0 through 1.10.0 Langflow 1.9.0 could allow server-side request forgery (SSRF) due to insecure defa

Published Jul 17, 2026 CVSS 7.7

IBM Langflow OSS 1.0.0 through 1.10.0 Langflow 1.9.0 could allow server-side request forgery (SSRF) due to insecure default configuration and incomplete enforcement of the SSRF protection mechanism.

Affected AI Products

langflow
Get the weekly digest. Every Monday: top AI security stories of the week. Free.