VulnWatch VulnWatch
← Back to dashboard
High nvd · CVE-2026-81268

CVE-2026-81268: IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execute flows and obtain sensitive

Published Sep 10, 2026 CVSS 8.1

IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execute flows and obtain sensitive information due to insufficient session expiration of API keys after user deactivation.

Affected AI Products

langflow
Get the weekly digest. Every Monday: top AI security stories of the week. Free.