IBM Product Security Update Advisory
Security Update Advisory
A security update has been released to address vulnerabilities in IBM products. users of the affected products should update to the latest version.
Affected Products
- Langflow OSS versions 1.0.0 or later and earlier than 1.9.2.
- IBM i version 7.3.
- IBM i version 7.4.
- IBM i version 7.5.
- IBM i version 7.6.
Resolved Vulnerabilities
- CVE-2026-7787: An access control bypass vulnerability in Langflow OSS.
- CVE-2026-7870: A privilege escalation vulnerability in IBM i.
Patch Information
vulnerability patches have been made available in the latest update. Langflow OSS should be updated to 1.9.2, and IBM i should apply the security patches as instructed on the reference site.
Notes
- Security Bulletin: Unauthenticated Session History Access via Public Flow Execution.
- Security Bulletin: IBM i is Affected by Privilege Escalation [CVE-2026-7870].