高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。
| ベンダー | プロダクト | 影響を受けるバージョン | CPE | 購読 |
|---|---|---|---|---|
| IBM | Langflow Desktop | 1.0.0 ~ 1.8.4 | cpe:2.3:a:ibm:langflow_desktop:1.0.0:*:*:*:*:*:*:* |
| # | POC説明 | ソースリンク | Shenlongリンク |
|---|
公開POCは見つかりませんでした。
ログインしてAI POCを生成| CVE-2026-6389 | 8.8 HIGH | IBM Turbonomic Prometurbo agent used by IBM Turbonomic Application Resource Management is |
| CVE-2026-6543 | 8.8 HIGH | Authenticated Remote Code Execution Vulnerability in Langflow Code Validation Endpoint |
| CVE-2026-4503 | 7.5 HIGH | Unauthenticated Insecure Direct Object Reference (IDOR) Vulnerability in Langflow Desktop |
| CVE-2026-1577 | 6.5 MEDIUM | IBM® Db2® is vulnerable to a denial of service with a specially crafted query involving mu |
| CVE-2025-36122 | 6.5 MEDIUM | IBM® Db2® is vulnerable to a denial of service with a specially crafted query when stmthea |
| CVE-2026-6542 | 6.5 MEDIUM | Monitor API allows cross-user read of transaction logs and deletion of build data via flow |
| CVE-2026-3345 | 6.5 MEDIUM | Path Traversal and Arbitrary File Write Vulnerability in IBM Langflow Desktop API v2 File |
| CVE-2026-4502 | 6.5 MEDIUM | Arbitrary File Write and Remote Code Execution Vulnerability in Langflow v2 API |
| CVE-2026-2311 | 6.4 MEDIUM | IBM i is affected by a privilege escalation vulnerability in Web Administration GUI [] |
| CVE-2026-3346 | 6.4 MEDIUM | Stored Cross-Site Scripting (XSS) in Langflow Markdown Rendering via rehypeRaw |
| CVE-2025-36335 | 6.2 MEDIUM | Vulnerabilities found |
| CVE-2025-14688 | 5.3 MEDIUM | IBM® Db2® is vulnerable to a denial of service when fetching from certain tables under spe |
| CVE-2025-36180 | 5.3 MEDIUM | Inadequate Pod Communication Restrictions, affects watsonx.data |
まだコメントはありません