Security Advisory

CVE-2026-12942

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-30 16:45:49
Last updated 2026-07-30 17:32:16
Assigner ibm
CVSS score not scored
State PUBLISHED

Description

IBM Langflow OSS 1.0.0 through 1.10.1 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot dot " sequences ( /.. /) to view arbitrary files on the system.