Threat Intelligence Database
Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threat Intelligence
Click on any threat for detailed analysis and mitigation recommendations
0 IBM Langflow OSS versions 1.0.0 through 1.12.2 contain a code injection vulnerability (CWE-94) that allows a remote authenticated attacker to execute arbitrary operating system commands due to improper neutralization of special elements in OS command generation. This vulnerability has a high severity score of 8.1 and affects confidentiality and integrity without impacting availability. Join the discussion | CVE Database V5 | 10/06/2026, 23:59:56 UTC Added: 10/07/2026, 00:34:04 UTC |
0 IBM Langflow OSS versions 1.0.0 through 1.10.2 contain a server-side request forgery (SSRF) vulnerability. This flaw allows unauthenticated attackers to send unauthorized requests from the affected system. Exploitation could lead to network enumeration or assist in other attacks. The vulnerability has a medium severity rating with a CVSS score of 6.5. No patch or remediation information is currently provided. Join the discussion | GCVE Database | 09/14/2026, 21:31:46 UTC Added: 09/15/2026, 01:39:15 UTC |
IBM Langflow OSS versions 1.0.0 through 1.11.5 contain a vulnerability in the MCP Tools component where improper cache key isolation allows an authenticated attacker to access another user's MCP server context. This issue could lead to limited confidentiality and integrity impacts but does not affect availability. Join the discussion | GCVE Database | 09/14/2026, 21:31:46 UTC Added: 09/15/2026, 01:39:15 UTC |
0 IBM Langflow OSS 1.0.0 through 1.11.5 could allow a remote attacker to execute arbitrary code due to code injection during graph construction. Join the discussion | CVE Database V5 | 09/10/2026, 21:36:13 UTC Added: 09/10/2026, 21:47:54 UTC |
IBM Langflow OSS versions 1.0.0 through 1.10.0 contain a critical vulnerability that allows remote attackers to inject arbitrary code due to improper control of user input code. This vulnerability is identified as CWE-94, indicating code injection issues. The flaw can lead to complete compromise of confidentiality, integrity, and availability of the affected system. Join the discussion | GCVE Database | 07/30/2026, 21:31:49 UTC Added: 07/30/2026, 23:26:02 UTC |
0 IBM Langflow OSS versions 1.0.0 through 1.10.1 contain an authorization bypass vulnerability that allows authenticated users to access and manipulate other users' build jobs. This occurs due to improper access control on log retrieval and unauthenticated build endpoints. The vulnerability is identified as CWE-639 and has a CVSS v3.1 score of 7.1, indicating high severity. Join the discussion | GCVE Database | 07/30/2026, 16:44:39 UTC Added: 07/30/2026, 23:28:25 UTC |
Showing 1 to 6 of 6 results