CVE-2026-13444
Awaiting Analysis Awaiting Analysis - Queue

Information Disclosure in IBM Langflow OSS

Vulnerability report for CVE-2026-13444, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-07-30

Last updated on: 2026-07-30

Assigner: IBM Corporation

Description

IBM Langflow OSS 1.0.0 through 1.10.1 can allow an attacker to access another user's private vector documents by creating their own flow with matching Chroma persist_directory and collection_name values. The attacker receives exact victim content in their workflow output despite having no authorization to read the victim's flow. Additionally, the attacker can pollute the victim's collection by inserting their own documents into the shared namespace.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-07-30
Last Modified
2026-07-30
Generated
2026-07-31
AI Q&A
2026-07-31
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
ibm langflow From 1.0.0 (inc) to 1.10.1 (inc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-520 Allowing a .NET application to run at potentially escalated levels of access to the underlying operating and file systems can be dangerous and result in various forms of attacks.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

IBM Langflow OSS versions 1.0.0 through 1.10.1 allow an attacker to access another user's private vector documents by creating a flow with matching Chroma persist_directory and collection_name values. The attacker receives the victim's exact content in their workflow output without proper authorization. Additionally, the attacker can insert their own documents into the victim's shared collection.

Detection Guidance

To detect this vulnerability, check for unauthorized access to Chroma vector databases by monitoring for flows with matching persist_directory and collection_name values across different users. Inspect workflow outputs for unexpected content from other users. Review logs for suspicious document insertions into shared namespaces.

Impact Analysis

This vulnerability can lead to unauthorized access to sensitive documents, data leakage, and potential manipulation of shared collections. Attackers could steal proprietary or confidential information, inject malicious content, or disrupt workflows relying on shared vector databases.

Compliance Impact

This vulnerability may violate data protection regulations like GDPR and HIPAA by enabling unauthorized access to personal or sensitive data. Organizations could face compliance violations, legal penalties, and reputational damage due to data breaches resulting from this issue.

Mitigation Strategies

Immediately update IBM Langflow OSS to a version beyond 1.10.1 to address the vulnerability. Ensure all users avoid using matching Chroma persist_directory and collection_name values across different workflows to prevent unauthorized access.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-13444. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart