Security Advisory

CVE-2026-8056

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-17 19:13:12
Last updated 2026-07-23 03:56:09
Assigner ibm
CVSS score 8.8
State PUBLISHED

Description

IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated users to override component parameters at runtime via the API. A critical security flaw exists in the parameter filtering mechanism within the `apply_tweaks()` function.