Skip to content

PRP: Langflow CVE-2026-21445 Missing Authentication on Critical API Endpoints #800

@saurabhb-dev

Description

@saurabhb-dev
  • Identifier of the vulnerability: CVE-2026-21445 and GHSA-c5cp-vx83-jhqx
  • Affected software: Langflow (versions < 1.7.0)
  • Type of vulnerability: Missing Authentication for Critical Function
  • Requires authentication: No
  • Language you would use for writing the plugin: Templated plugins
  • Resources:

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions