CVE-2026-33682 | Streamlit up to 1.53.x on Windows UNC realpath server-side request forgery
A vulnerability was found in Streamlit up to 1.53.x on Windows and classified as critical. The impacted element is the function realpath of the component UNC Handler. Such manipulation leads to server-side request forgery.
This vulnerability is documented as CVE-2026-33682. The attack requires being on the local network. There is not any exploit available.
It is suggested to upgrade the affected component.