IBM Langflow OSS contains a weak cryptographic key derivation vulnerability in theĀ ensure_fernet_key() function.
References
| Link | Resource |
|---|---|
| https://www.ibm.com/support/pages/node/7282648 | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2026-08-05 19:17
Updated : 2026-08-07 13:16
NVD link : CVE-2026-9205
Mitre link : CVE-2026-9205
CVE.ORG link : CVE-2026-9205
JSON object : View
Products Affected
langflow
- langflow
CWE
CWE-338
Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
