{"success":true,"data":{"threats":[{"id":"45afb509-340f-4c9e-965e-195096bd905e","slug":"cve-2026-92415","externalId":"CVE-2026-92415","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-92415 — — Use of Externally-Controlled Input to Select Classes or Code vulnerability in Apache Jackrabbit's WebDAV/Davex client.","description":"— Use of Externally-Controlled Input to Select Classes or Code vulnerability in Apache Jackrabbit's WebDAV/Davex client.\n\nA malicious WebDAV/DavEx server, or an attacker able to intercept the connection, can cause the client to instantiate arbitrary classes from its classpath, which can lead to arbitrary file creation or truncation.\n\nOnly applications that use jackrabbit-spi2dav (directly or through jackrabbit-jcr2dav) to connect to a remote repository are affected. Jackrabbit servers are not affected.\n\nCategory: unsafe reflection on wire data (HIGH).\n\n\n\nThis issue affects Apache Jackrabbit: from 2.23.0 through 2.23.5, from 2.22.0 through 2.22.4, from 2.20.0 through 2.20.17.\n\n\n\nUsers are recommended to upgrade to versions 2.23.6, 2.22.5, or 2.20.18 which fix the issue.","cveId":"CVE-2026-92415","cvssScore":6.9,"cvssVector":"CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:N/AU:X/R:X/V:X/RE:X/U:X","severity":"medium","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-470"],"tags":["nvd","status:received","status:undergoing-analysis"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://lists.apache.org/thread.html/hcrxm4jp1mtk56xb8p1dtryz7hl08kmr","type":"advisory","title":"security@apache.org"},{"url":"http://www.openwall.com/lists/oss-security/2026/10/07/28","type":"advisory","title":"af854a3a-2127-422b-91ae-364da2661108"}],"epssScore":0.00344,"epssPercentile":0.25853,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T16:19:13.070Z","addedAt":"2026-10-07T16:39:32.795Z","updatedAt":"2026-10-08T18:39:30.539Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-92415","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-92415","note":"authoritative record"}]},{"id":"d8ccd244-a4a8-4ec0-941e-feac5151c12a","slug":"cve-2026-92414","externalId":"CVE-2026-92414","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-92414 — : Session Fixation / Session Reuse across Users vulnerability in Apache Jackrabbit.","description":": Session Fixation / Session Reuse across Users vulnerability in Apache Jackrabbit.\n\n\n\nJackrabbit WebDAV server attaches a cached authenticated session on any Lock-Token/TransactionId/SubscriptionId/If-header field token match with\n\nno credential check.\n\n\n\nThis issue affects Apache Jackrabbit: from 2.23.0 through 2.23.5, from 2.22.0 through 2.22.4, from 2.20.0 through 2.20.17.\n\n\n\n\n\n\n\n\n\n\n\n\nUsers are recommended to upgrade to versions 2.23.6, 2.22.5, or 2.20.18 which fix the issue.","cveId":"CVE-2026-92414","cvssScore":9.3,"cvssVector":"CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X","severity":"critical","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-384"],"tags":["nvd","status:received","status:undergoing-analysis"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://lists.apache.org/thread.html/gmbsmrs2lycl9nld7rd0h1r1fc4t75qr","type":"advisory","title":"security@apache.org"},{"url":"http://www.openwall.com/lists/oss-security/2026/10/07/27","type":"advisory","title":"af854a3a-2127-422b-91ae-364da2661108"}],"epssScore":0.0062,"epssPercentile":0.48096,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T16:19:12.900Z","addedAt":"2026-10-07T16:39:32.788Z","updatedAt":"2026-10-08T18:39:30.530Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-92414","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-92414","note":"authoritative record"}]},{"id":"c3fe01a2-53f3-44ed-9c8b-a799bd5055e2","slug":"cve-2026-46570","externalId":"CVE-2026-46570","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-46570 — In NTFS-3G before 2026.7.7, a heap buffer overflow exists in ntfs_index_walk_down() in libntfs-3g/index.c that allows an attacker to corrupt heap m…","description":"In NTFS-3G before 2026.7.7, a heap buffer overflow exists in ntfs_index_walk_down() in libntfs-3g/index.c that allows an attacker to corrupt heap memory in the SUID-root ntfs-3g binary by crafting a malicious NTFS image. The overflow is triggered by reading the special crafted file metadata.","cveId":"CVE-2026-46570","cvssScore":8.1,"cvssVector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H","severity":"high","vendor":"tuxera","product":"ntfs-3g","affectedVersions":["< 2026.7.7"],"cwes":["CWE-122"],"tags":["nvd","status:awaiting-analysis","status:undergoing-analysis","status:analyzed"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":true,"patchLinks":["https://github.com/tuxera/ntfs-3g/security/advisories/GHSA-m6qq-pv5j-2wxc"],"references":[{"url":"https://github.com/tuxera/ntfs-3g/releases#release-2026.7.7","type":"advisory","title":"Release Notes"},{"url":"https://github.com/tuxera/ntfs-3g/security/advisories/GHSA-m6qq-pv5j-2wxc","type":"patch","title":"Patch"}],"epssScore":0.00128,"epssPercentile":0.02135,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T15:17:21.010Z","addedAt":"2026-10-07T16:39:32.516Z","updatedAt":"2026-10-08T19:33:16.617Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-46570","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-46570","note":"authoritative record"}]},{"id":"306f6b6a-8883-475c-9fe9-17c79af42c6f","slug":"cve-2026-46572","externalId":"CVE-2026-46572","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-46572 — In NTFS-3G before 2026.7.7, a heap buffer overflow exists in ntfs_ib_cut_tail() in libntfs-3g/index.c that allows an attacker to corrupt heap memor…","description":"In NTFS-3G before 2026.7.7, a heap buffer overflow exists in ntfs_ib_cut_tail() in libntfs-3g/index.c that allows an attacker to corrupt heap memory in the SUID-root ntfs-3g binary by crafting a malicious NTFS image. The overflow is triggered by creating a file in a specially crafted directory.","cveId":"CVE-2026-46572","cvssScore":7.4,"cvssVector":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H","severity":"high","vendor":"tuxera","product":"ntfs-3g","affectedVersions":["< 2026.7.7"],"cwes":["CWE-122"],"tags":["nvd","status:received","status:awaiting-analysis","status:undergoing-analysis","status:analyzed"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":true,"patchLinks":["https://github.com/tuxera/ntfs-3g/security/advisories/GHSA-wx5r-gc7w-9hhc"],"references":[{"url":"https://github.com/tuxera/ntfs-3g/releases#release-2026.7.7","type":"advisory","title":"Release Notes"},{"url":"https://github.com/tuxera/ntfs-3g/security/advisories/GHSA-wx5r-gc7w-9hhc","type":"patch","title":"Patch"}],"epssScore":0.00128,"epssPercentile":0.02135,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T14:17:11.470Z","addedAt":"2026-10-07T14:39:35.296Z","updatedAt":"2026-10-08T19:33:16.600Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-46572","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-46572","note":"authoritative record"}]},{"id":"1c8bfd16-8fa0-49d7-800a-959788f24088","slug":"cve-2026-42617","externalId":"CVE-2026-42617","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-42617 — In NTFS-3G before 2026.7.7, a heap buffer overflow exists in ntfs_ir_to_ib() in index.c that allows an attacker to corrupt heap memory in the SUID-…","description":"In NTFS-3G before 2026.7.7, a heap buffer overflow exists in ntfs_ir_to_ib() in index.c that allows an attacker to corrupt heap memory in the SUID-root ntfs-3g binary by crafting a malicious NTFS image. The overflow is triggered by extending a directory, e.g., by creating a file.","cveId":"CVE-2026-42617","cvssScore":7.1,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H","severity":"high","vendor":"tuxera","product":"ntfs-3g","affectedVersions":["< 2026.7.7"],"cwes":["CWE-122"],"tags":["nvd","status:received","status:awaiting-analysis","status:undergoing-analysis","status:analyzed"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":true,"patchLinks":["https://github.com/tuxera/ntfs-3g/security/advisories/GHSA-jv65-qqf7-f692"],"references":[{"url":"https://github.com/tuxera/ntfs-3g/releases#release-2026.7.7","type":"advisory","title":"Release Notes"},{"url":"https://github.com/tuxera/ntfs-3g/security/advisories/GHSA-jv65-qqf7-f692","type":"patch","title":"Patch"}],"epssScore":0.00126,"epssPercentile":0.02033,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T14:17:09.587Z","addedAt":"2026-10-07T14:39:35.226Z","updatedAt":"2026-10-08T19:33:16.520Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-42617","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-42617","note":"authoritative record"}]},{"id":"c3a54d54-dd8a-4ea2-87de-ddeb1b80d205","slug":"cve-2026-84897","externalId":"CVE-2026-84897","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-84897 — src/internal.c in wolfSSL wolfSSH through 1.5.0 admits the server-to-client Diffie-Hellman group exchange messages SSH_MSG_KEX_DH_GEX_GROUP (31) an…","description":"src/internal.c in wolfSSL wolfSSH through 1.5.0 admits the server-to-client Diffie-Hellman group exchange messages SSH_MSG_KEX_DH_GEX_GROUP (31) and SSH_MSG_KEX_DH_GEX_REPLY (33) when a server receives them from an unauthenticated client. IsMessageAllowedServer() applies no direction check to the key exchange message range: when the peer is keying and no particular message is expected, which is the state a server is in for the whole window after it processes the client's KEXINIT because nothing sets handshake->expectMsgId there, the function falls out of its expectation branch without a verdict and reaches a numeric bound that admits every message id from 30 through 34. A client that negotiates diffie-hellman-group-exchange-sha256 and then sends message 31 makes the server run the client-side handler DoKexDhGexGroup(), which validates the attacker-supplied group with two 8-round Miller-Rabin primality tests, one on p and one on (p-1)/2, on a value of up to 8192 bits. The handler then returns success: the server stores the attacker's prime and generator, generates a Diffie-Hellman key pair in the attacker's group, and sends the client-role message SSH_MSG_KEX_DH_GEX_INIT (32) back to the attacker. Published RFC 3526 safe primes are the worst-case input and cost the attacker nothing to obtain. The primality validation was added in 1.5.0; versions from 1.2.0 through 1.4.22 admit the same message and enter the same client-role path without the primality cost. Message 33 is admitted as well, but on a server it is rejected before any cryptography because no public key check callback is registered, so it carries no comparable cost. Builds that define WOLFSSH_NO_DH_GEX_SHA256, which is implied by WOLFSSH_NO_DH or NO_SHA256, are unaffected.","cveId":"CVE-2026-84897","cvssScore":6.9,"cvssVector":"CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:X/V:X/RE:X/U:X","severity":"medium","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-372","CWE-400","CWE-405"],"tags":["nvd","status:received","status:awaiting-analysis","status:undergoing-analysis"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://github.com/wolfSSL/wolfssh/commit/a472f1ee2b653f623d85ef2297321733f1dbfd22","type":"advisory","title":"facts@wolfssl.com"},{"url":"https://github.com/wolfSSL/wolfssh/pull/1221","type":"advisory","title":"facts@wolfssl.com"},{"url":"https://www.rfc-editor.org/rfc/rfc3526.html","type":"advisory","title":"facts@wolfssl.com"},{"url":"https://www.rfc-editor.org/rfc/rfc4419.html","type":"advisory","title":"facts@wolfssl.com"}],"epssScore":0.00301,"epssPercentile":0.20955,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T03:17:00.067Z","addedAt":"2026-10-07T04:39:33.985Z","updatedAt":"2026-10-07T20:39:40.019Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-84897","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-84897","note":"authoritative record"}]},{"id":"92ba1df7-6b96-403a-9eb5-69f19250dc20","slug":"cve-2026-81535","externalId":"CVE-2026-81535","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-81535 — In wolfSSH through 1.5.0 built with --enable-fwd, DoChannelOpen() in src/internal.c gates only direct-tcpip channel opens with the forwarding polic…","description":"In wolfSSH through 1.5.0 built with --enable-fwd, DoChannelOpen() in src/internal.c gates only direct-tcpip channel opens with the forwarding policy callback. forwarded-tcpip opens are admitted without an authorization check and are not capped in number, allowing a malicious SSH peer to make an endpoint allocate unbounded per-channel buffers for forwarding channels the application never authorized. A client also does not check a forwarded-tcpip open against the forwards it registered with a tcpip-forward request, as RFC 4254 section 7.2 requires, so a malicious server can open forwarding channels for addresses and ports the client never asked it to forward.","cveId":"CVE-2026-81535","cvssScore":6.3,"cvssVector":"CVSS:4.0/AV:N/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X","severity":"medium","vendor":null,"product":null,"affectedVersions":[],"cwes":["CWE-862","CWE-863"],"tags":["nvd","status:received","status:awaiting-analysis","status:undergoing-analysis"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://github.com/wolfSSL/wolfssh/commit/616eb681e70759c30c3ba158f2b18d7bd954def8","type":"advisory","title":"facts@wolfssl.com"},{"url":"https://github.com/wolfSSL/wolfssh/commit/79a7f299337a28aa561409688a268d0efe6e295c","type":"advisory","title":"facts@wolfssl.com"},{"url":"https://github.com/wolfSSL/wolfssh/commit/e396a0a4b6b367f10270287446a4be0071742b5c","type":"advisory","title":"facts@wolfssl.com"}],"epssScore":0.00276,"epssPercentile":0.18393,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T03:16:59.567Z","addedAt":"2026-10-07T04:39:33.960Z","updatedAt":"2026-10-07T20:39:40.009Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-81535","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-81535","note":"authoritative record"}]},{"id":"0e338e5c-3a65-4fe3-81ae-e6545856c14b","slug":"cve-2026-97680","externalId":"CVE-2026-97680","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-97680 — IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to obtain sensitive information or inject malicious data due to i…","description":"IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to obtain sensitive information or inject malicious data due to improper access control in the vertex result caching subsystem.","cveId":"CVE-2026-97680","cvssScore":8.3,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L","severity":"high","vendor":"langflow","product":"langflow","affectedVersions":[">= 1.0.0, < 1.12.3"],"cwes":["CWE-284"],"tags":["nvd","status:received","status:undergoing-analysis","status:analyzed"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7290694","type":"vendor","title":"Vendor Advisory"}],"epssScore":0.00266,"epssPercentile":0.17001,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T01:16:36.780Z","addedAt":"2026-10-07T02:39:29.158Z","updatedAt":"2026-10-08T04:39:32.713Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-97680","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-97680","note":"authoritative record"}]},{"id":"b5b3eb49-3931-4764-af28-6c7484496727","slug":"cve-2026-97679","externalId":"CVE-2026-97679","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-97679 — IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of speci…","description":"IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of special elements used in an OS command ('Code Injection') related to improper input validation.","cveId":"CVE-2026-97679","cvssScore":8.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","severity":"high","vendor":"langflow","product":"langflow","affectedVersions":[">= 1.0.0, < 1.12.3"],"cwes":["CWE-94"],"tags":["nvd","status:received","status:undergoing-analysis","status:analyzed"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7290694","type":"vendor","title":"Vendor Advisory"}],"epssScore":0.00449,"epssPercentile":0.36979,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T01:16:36.643Z","addedAt":"2026-10-07T02:39:29.151Z","updatedAt":"2026-10-08T04:39:32.701Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-97679","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-97679","note":"authoritative record"}]},{"id":"80bc0017-6d68-4c04-9a4e-123b35e1368e","slug":"cve-2026-97678","externalId":"CVE-2026-97678","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-97678 — IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper input validation.","description":"IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper input validation.","cveId":"CVE-2026-97678","cvssScore":8.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","severity":"high","vendor":"langflow","product":"langflow","affectedVersions":[">= 1.0.0, < 1.12.3"],"cwes":["CWE-693"],"tags":["nvd","status:received","status:undergoing-analysis","status:analyzed"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7290694","type":"vendor","title":"Vendor Advisory"}],"epssScore":0.00415,"epssPercentile":0.33747,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T01:16:36.517Z","addedAt":"2026-10-07T02:39:29.143Z","updatedAt":"2026-10-08T14:40:02.059Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-97678","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-97678","note":"authoritative record"}]},{"id":"6af4e460-de38-4a31-9ca8-28b3de6bba9b","slug":"cve-2026-97676","externalId":"CVE-2026-97676","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-97676 — IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of speci…","description":"IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper neutralization of special elements used in code, resulting in a sandbox escape.","cveId":"CVE-2026-97676","cvssScore":8.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","severity":"high","vendor":"langflow","product":"langflow","affectedVersions":[">= 1.0.0, < 1.12.3"],"cwes":["CWE-94"],"tags":["nvd","status:received","status:undergoing-analysis","status:analyzed"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7290694","type":"vendor","title":"Vendor Advisory"}],"epssScore":0.00548,"epssPercentile":0.44128,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T01:16:36.387Z","addedAt":"2026-10-07T02:39:29.135Z","updatedAt":"2026-10-08T04:39:32.676Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-97676","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-97676","note":"authoritative record"}]},{"id":"01d2bf8c-e76b-46d9-b346-a4b9e9ff6878","slug":"cve-2026-97674","externalId":"CVE-2026-97674","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-97674 — IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to execute arbitrary OS commands due to improper neutralization o…","description":"IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to execute arbitrary OS commands due to improper neutralization of special elements used in an OS command ('Code Injection'), aka improper control of code generation.","cveId":"CVE-2026-97674","cvssScore":8.1,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N","severity":"high","vendor":"langflow","product":"langflow","affectedVersions":[">= 1.0.0, < 1.12.3"],"cwes":["CWE-94"],"tags":["nvd","status:received","status:undergoing-analysis","status:analyzed"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7290694","type":"vendor","title":"Vendor Advisory"}],"epssScore":0.003,"epssPercentile":0.20874,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T01:16:36.247Z","addedAt":"2026-10-07T02:39:29.128Z","updatedAt":"2026-10-08T14:40:02.044Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-97674","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-97674","note":"authoritative record"}]},{"id":"e62f56de-84fa-4486-a37d-cb73bee669f6","slug":"cve-2026-97673","externalId":"CVE-2026-97673","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-97673 — IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper input validation.","description":"IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to execute arbitrary code due to improper input validation.","cveId":"CVE-2026-97673","cvssScore":8.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","severity":"high","vendor":"langflow","product":"langflow","affectedVersions":[">= 1.0.0, < 1.12.3"],"cwes":["CWE-693"],"tags":["nvd","status:received","status:undergoing-analysis","status:analyzed"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7290694","type":"vendor","title":"Vendor Advisory"}],"epssScore":0.00445,"epssPercentile":0.36719,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T01:16:36.117Z","addedAt":"2026-10-07T02:39:29.120Z","updatedAt":"2026-10-08T04:39:32.651Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-97673","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-97673","note":"authoritative record"}]},{"id":"dafa55d0-2977-4154-911c-bedf47b6e198","slug":"cve-2026-97671","externalId":"CVE-2026-97671","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-97671 — IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to obtain sensitive information due to a path traversal vulnerabi…","description":"IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to obtain sensitive information due to a path traversal vulnerability.","cveId":"CVE-2026-97671","cvssScore":6.5,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","severity":"medium","vendor":"langflow","product":"langflow","affectedVersions":[">= 1.0.0, < 1.12.3"],"cwes":["CWE-22"],"tags":["nvd","status:received","status:undergoing-analysis","status:analyzed"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7290694","type":"vendor","title":"Vendor Advisory"}],"epssScore":0.00456,"epssPercentile":0.37608,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T01:16:35.980Z","addedAt":"2026-10-07T02:39:29.113Z","updatedAt":"2026-10-08T02:39:29.821Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-97671","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-97671","note":"authoritative record"}]},{"id":"d292b544-e73d-4639-a3b7-02111e8641d4","slug":"cve-2026-97655","externalId":"CVE-2026-97655","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-97655 — IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote attacker to execute arbitrary code due to an incomplete blocklist in the code security s…","description":"IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote attacker to execute arbitrary code due to an incomplete blocklist in the code security scanner.","cveId":"CVE-2026-97655","cvssScore":8.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","severity":"high","vendor":"langflow","product":"langflow","affectedVersions":[">= 1.0.0, < 1.12.3"],"cwes":["CWE-94"],"tags":["nvd","status:received","status:undergoing-analysis","status:analyzed"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7290694","type":"vendor","title":"Vendor Advisory"}],"epssScore":0.00548,"epssPercentile":0.44127,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T01:16:35.833Z","addedAt":"2026-10-07T02:39:29.105Z","updatedAt":"2026-10-08T14:40:02.029Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-97655","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-97655","note":"authoritative record"}]},{"id":"c0ad4eb9-6bd5-46e1-8a1e-3fc963ecf00a","slug":"cve-2026-93679","externalId":"CVE-2026-93679","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-93679 — IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to cause a denial of service due to uncontrolled resource consump…","description":"IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to cause a denial of service due to uncontrolled resource consumption during ZIP file extraction.","cveId":"CVE-2026-93679","cvssScore":4.3,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L","severity":"medium","vendor":"langflow","product":"langflow","affectedVersions":[">= 1.0.0, < 1.12.3"],"cwes":["CWE-400"],"tags":["nvd","status:received","status:undergoing-analysis","status:analyzed"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7290694","type":"vendor","title":"Vendor Advisory"}],"epssScore":0.0048,"epssPercentile":0.39442,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T01:16:35.710Z","addedAt":"2026-10-07T02:39:29.098Z","updatedAt":"2026-10-08T02:39:29.800Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-93679","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-93679","note":"authoritative record"}]},{"id":"23403325-f18f-42e7-8da0-a58027eb6e0c","slug":"cve-2026-93678","externalId":"CVE-2026-93678","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-93678 — IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to obtain sensitive information due to improper authorization.","description":"IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to obtain sensitive information due to improper authorization.","cveId":"CVE-2026-93678","cvssScore":7.6,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:L","severity":"high","vendor":"langflow","product":"langflow","affectedVersions":[">= 1.0.0, < 1.12.3"],"cwes":["CWE-639"],"tags":["nvd","status:received","status:undergoing-analysis","status:analyzed"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7290694","type":"vendor","title":"Vendor Advisory"}],"epssScore":0.00382,"epssPercentile":0.30088,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T01:16:35.580Z","addedAt":"2026-10-07T02:39:29.090Z","updatedAt":"2026-10-08T02:39:29.790Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-93678","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-93678","note":"authoritative record"}]},{"id":"1046f7ea-3060-477f-a999-aff809681878","slug":"cve-2026-93677","externalId":"CVE-2026-93677","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-93677 — IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to obtain sensitive information due to exposure of sensitive info…","description":"IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote authenticated attacker to obtain sensitive information due to exposure of sensitive information to an unauthorized actor.","cveId":"CVE-2026-93677","cvssScore":6.5,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","severity":"medium","vendor":"langflow","product":"langflow","affectedVersions":[">= 1.0.0, < 1.12.3"],"cwes":["CWE-200"],"tags":["nvd","status:received","status:awaiting-analysis","status:undergoing-analysis","status:analyzed"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7290694","type":"vendor","title":"Vendor Advisory"}],"epssScore":0.0046,"epssPercentile":0.37839,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T01:16:35.457Z","addedAt":"2026-10-07T02:39:29.083Z","updatedAt":"2026-10-08T18:39:30.520Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-93677","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-93677","note":"authoritative record"}]},{"id":"045cfaa5-247a-4d2f-bee0-ef9156f1164b","slug":"cve-2026-93675","externalId":"CVE-2026-93675","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-93675 — IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote attacker to execute arbitrary code due to an expected dependency confusion.","description":"IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote attacker to execute arbitrary code due to an expected dependency confusion.","cveId":"CVE-2026-93675","cvssScore":9.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","severity":"critical","vendor":"langflow","product":"langflow","affectedVersions":[">= 1.0.0, < 1.12.3"],"cwes":["CWE-440"],"tags":["nvd","status:received","status:awaiting-analysis","status:undergoing-analysis","status:analyzed"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7290694","type":"vendor","title":"Vendor Advisory"}],"epssScore":0.00678,"epssPercentile":0.50823,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T01:16:35.320Z","addedAt":"2026-10-07T02:39:29.075Z","updatedAt":"2026-10-08T18:39:30.509Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-93675","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-93675","note":"authoritative record"}]},{"id":"8863c2f2-f615-41e8-9283-cb1b2d35dd16","slug":"cve-2026-93674","externalId":"CVE-2026-93674","source":"NVD","sourceType":"cve-db","type":"vulnerability","title":"CVE-2026-93674 — IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote attacker to execute arbitrary code due to improper neutralization of special elements us…","description":"IBM Langflow OSS 1.0.0 through 1.12.2 could allow a remote attacker to execute arbitrary code due to improper neutralization of special elements used in an OS command.","cveId":"CVE-2026-93674","cvssScore":9.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","severity":"critical","vendor":"langflow","product":"langflow","affectedVersions":[">= 1.0.0, < 1.12.3"],"cwes":["CWE-94"],"tags":["nvd","status:received","status:awaiting-analysis","status:undergoing-analysis","status:analyzed"],"relatedCves":[],"titleFingerprint":null,"countryCodes":[],"knownExploited":false,"patchAvailable":false,"patchLinks":[],"references":[{"url":"https://www.ibm.com/support/pages/node/7290694","type":"vendor","title":"Vendor Advisory"}],"epssScore":0.00756,"epssPercentile":0.53767,"nucleiTemplatePath":null,"nucleiSeverity":null,"enrichment":null,"publishedAt":"2026-10-07T01:16:35.187Z","addedAt":"2026-10-07T02:39:29.066Z","updatedAt":"2026-10-08T18:39:30.499Z","epssUpdatedAt":"2026-10-08T12:00:21.000Z","nucleiUpdatedAt":null,"links":[{"label":"NVD","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-93674","note":"ingested from NVD"},{"label":"CVE Program","url":"https://www.cve.org/CVERecord?id=CVE-2026-93674","note":"authoritative record"}]}],"pagination":{"page":1,"limit":20,"total":5596,"totalPages":280,"hasNext":true,"hasPrev":false}},"meta":{"apiVersion":"v1","requestedAt":"2026-10-09T00:25:30.470Z","durationMs":48,"filters":{"search":null,"severity":[],"type":[],"country":[],"tag":["status:undergoing-analysis"],"cwe":[],"vendor":null,"product":null,"cve":null,"source":[],"days":null,"publishedAfter":null,"publishedBefore":null,"minCvss":null,"maxCvss":null,"minEpss":null,"knownExploited":null,"hasPatch":null,"hasNucleiTemplate":null},"sort":"newest","unknownParams":[],"warnings":[]}}