CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

CVE-2026-19875

highCVSS 7.5covered by 2 sourcesfirst seen 2026-08-19
A remote, anonymous attacker can exploit a vulnerability in IBM Langflow Desktop to bypass security measures and manipulate data.

CSIRTS triage

What
A vulnerability in IBM Langflow Desktop enables remote security bypass and data manipulation by unauthenticated attackers.
Who is affected
IBM Langflow Desktop instances accessible over the network are vulnerable.
Urgency
Medium severity; remote unauthenticated access to bypass security and manipulate data warrants timely remediation.
Action
Update IBM Langflow Desktop to a patched version or restrict network access for CVE-2026-19875.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch CVE-2026-19875

Get an email if CVE-2026-19875 is added to CISA KEV, gains public exploit code, or a new advisory cites it — max one per day, one-click unsubscribe.

Exploitation outlook

Advisory coverage (2)

External references

NVD record for CVE-2026-19875

CVE.org record

Embed the live status

CVE-2026-19875 live status badge — this badge updates automatically when the KEV or exploit status changes. How to embed it →

[![CVE-2026-19875 status](https://www.csirts.com/badge/CVE-2026-19875)](https://www.csirts.com/cve/CVE-2026-19875)