Security Advisory

CVE-2026-3345

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-04-30 21:11:20
Last updated 2026-05-27 12:23:58
Assigner ibm
State PUBLISHED

Description

IBM Langflow Desktop <=1.8.4 Langflow could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL request containing "dot dot" sequences (/../) to view arbitrary files on the system.