CVE-2026-5022 | langflow-ai langflow Image /api/v1/files/images/ flow_id/file_name authorization
A vulnerability identified as problematic has been detected in langflow-ai langflow. This issue affects some unknown processing of the file /api/v1/files/images/ of the component Image Handler. This manipulation of the argument flow_id/file_name causes missing authorization.
The identification of this vulnerability is CVE-2026-5022. It is possible to initiate the attack remotely. There is no exploit available.