CVE-2026-33017: Langflow < 1.9.0 - Remote Code Execution
HoneyLabs honeypots recorded 2 probes matching CVE-2026-33017 from 2 distinct source IP addresses in the last 7 days. Severity is rated critical.
This CVE is on CISA's Known Exploited Vulnerabilities list.
Request paths that identify it
- /api/v1/build_public_tmp//flow
- /api/v1/build_public_tmp/00000000-0000-0000-0000-000000000000/flow
Addresses probing it
| Source IP | Probes | Network | Country |
|---|---|---|---|
| 172.71.124.200 | 1 | Cloudflare, Inc. | Singapore |
| 34.89.245.228 | 1 | Google LLC | Germany |
Networks it comes from
| ASN | Organisation | Probes | Source IPs |
|---|---|---|---|
| AS13335 | Cloudflare, Inc. | 1 | 1 |
| AS396982 | Google LLC | 1 | 1 |
Captured requests
- /api/v1/build_public_tmp/00000000-0000-0000-0000-000000000000/flow
CVE report
CVE report
Open a specific CVE from the CVE tracker.