Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wq3q-gcx9-xvm2

Опубликовано: 05 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 8.5

Описание

IBM Langflow OSS 1.0.0 through 1.10.3 Langflow allows remote authenticated attackers to bypass localhost-only restrictions and write arbitrary MCP server configurations to IDE configuration files on the host system.

IBM Langflow OSS 1.0.0 through 1.10.3 Langflow allows remote authenticated attackers to bypass localhost-only restrictions and write arbitrary MCP server configurations to IDE configuration files on the host system.

EPSS

Процентиль: 24%
0.00309
Низкий

8.5 High

CVSS3

Дефекты

CWE-807

Связанные уязвимости

CVSS3: 8.5
nvd
14 дней назад

IBM Langflow OSS 1.0.0 through 1.10.3 Langflow allows remote authenticated attackers to bypass localhost-only restrictions and write arbitrary MCP server configurations to IDE configuration files on the host system.

EPSS

Процентиль: 24%
0.00309
Низкий

8.5 High

CVSS3

Дефекты

CWE-807