IBM Product Security Update Advisory

IBM Product Security Update Advisory

Security Update Advisory


A security update has been released to address vulnerabilities in IBM products. users of the affected products should update to the latest version.

Affected Products


  • Langflow OSS versions 1.0.0 or later and earlier than 1.9.2.
  • IBM i version 7.3.
  • IBM i version 7.4.
  • IBM i version 7.5.
  • IBM i version 7.6.

Resolved Vulnerabilities


  • CVE-2026-7787: An access control bypass vulnerability in Langflow OSS.
  • CVE-2026-7870: A privilege escalation vulnerability in IBM i.

Patch Information


vulnerability patches have been made available in the latest update. Langflow OSS should be updated to 1.9.2, and IBM i should apply the security patches as instructed on the reference site.

Notes


  • Security Bulletin: Unauthenticated Session History Access via Public Flow Execution.
  • Security Bulletin: IBM i is Affected by Privilege Escalation [CVE-2026-7870].