HIGHVulnerability
Verified
Global

NVD HIGH: CVE-2026-13442 — IBM Langflow OSS 1.0.0 through 1.10.1 can allow an attacker to reuse another use...

·Source: NIST NVD

Updated:

Executive Summary

IBM Langflow OSS 1.0.0 through 1.10.1 can allow an attacker to reuse another user's FAISS namespace to access owner-only vector content and influence later query results. This causes cross-user information disclosure and limited integrity impact through persistent poisoning of returned results.

Analysis

IBM Langflow OSS 1.0.0 through 1.10.1 can allow an attacker to reuse another user's FAISS namespace to access owner-only vector content and influence later query results. This causes cross-user information disclosure and limited integrity impact through persistent poisoning of returned results. CVSS Score: 7.1. Published: 2026-07-28T21:17:25.387.

Indicators of Compromise (1)

CVE (1)
CVE-2026-13442
Source Attribution

Originally published by NIST NVD on Jul 28, 2026. Verified by: NIST.

Related Threats