
🔓 IBM Langflow OSS 1.0–1.8.4: CVE-2026-7664 is a CVSS 9.8 critical. No auth needed to hit the webhook endpoint, execute MCP ops, and access protected project resources. Upgrade now. #AI #AppSec https://secalerts.co/vulnerability/CVE-2026-7664?utm_campaign=x https://t.co/ms9Cfjm1R4
Post summary
The tweet announces a critical, unauthenticated vulnerability in IBM Langflow OSS and urges users to apply the available upgrade.

