Vulnerability Details CVE-2026-81268
IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote authenticated attacker to execute flows and obtain sensitive information due to insufficient session expiration of API keys after user deactivation.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 23.3%
CVSS Severity
CVSS v3 Score 8.1