Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-c975-75gc-hhvw

Опубликовано: 17 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

IBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to read arbitrary files including the JWT signing key and forge authentication tokens for any user.

IBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to read arbitrary files including the JWT signing key and forge authentication tokens for any user.

EPSS

Процентиль: 29%
0.00363
Низкий

7.5 High

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 7.5
nvd
17 дней назад

IBM Langflow OSS 1.0.0 through 1.10.0 allows an authenticated attacker to read arbitrary files including the JWT signing key and forge authentication tokens for any user.

EPSS

Процентиль: 29%
0.00363
Низкий

7.5 High

CVSS3

Дефекты

CWE-22