What is CVE-2026-12946?
This vulnerability affects IBM Langflow OSS versions 1.0.0 through 1.10.0, allowing remote code injection due to improper control of user input. Affected users should immediately upgrade to a patched version.
Azərbaycanca: Bu boşluq IBM Langflow-un 1.0.0-dan 1.10.0-a qədər versiyalarına təsir edir və uzaqdan kod yeridilməsinə (Remote Code Injection) imkan verir. Səbəb istifadəçi daxiletmə kodunun düzgün idarə olunmamasıdır. Dərhal təsirlənmiş versiyaları yeniləyin.
Related CVEs
link basis: same weakness class CWE-94; shared vendor: IBM
FAQ2
What product is affected by CVE-2026-12946?
This vulnerability affects IBM Langflow OSS versions 1.0.0 through 1.10.0.
What security risk does CVE-2026-12946 pose?
It allows remote code injection due to improper control of user input.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.