CVE-2026-12945

Summary

IBM Langflow OSS 1.0.0 through 1.10.1 allows authenticated users to access and manipulate other users' build jobs through improper access control on log retrieval and unauthenticated build endpoints.

Affected Software

VendorProductVersion RangeStatus
IBMLangflow OSS1.0.0 <= 1.10.1affected

Weaknesses

  • CWE-639: CWE-639 Authorization Bypass Through User-Controlled Key

References