CVE-2026-33760 | langflow-ai langflow up to 1.8.x Transaction /api/v1/monitor authorization (GHSA-9c59-2mvc-vfr8 / EUVD-2026-38519)
A vulnerability identified as very critical has been detected in langflow-ai langflow up to 1.8.x. Affected by this vulnerability is an unknown functionality of the file /api/v1/monitor of the component Transaction Handler. This manipulation causes authorization bypass.
This vulnerability is registered as CVE-2026-33760. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.