Security Advisory
CVE-2026-12763
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
IBM Langflow OSS 1.0.0 through 1.11.5 could allow an authenticated attacker to access another user's MCP server context due to improper cache key isolation in the MCP Tools component.