CVE-2026-9081 | IBM Langflow OSS up to 1.10.3 validate_model_provider_key OLLAMA_BASE_URL server-side request forgery (EUVD-2026-53568)
A vulnerability classified as critical was found in IBM Langflow OSS up to 1.10.3. This affects the function validate_model_provider_key. Executing a manipulation of the argument OLLAMA_BASE_URL can lead to server-side request forgery.
The identification of this vulnerability is CVE-2026-9081. The attack may be launched remotely. There is no exploit available.VulDB Recent EntriesRead More