CVE-2026-33017: Langflow < 1.9.0 - Remote Code Execution

HoneyLabs honeypots recorded 2 probes matching CVE-2026-33017 from 2 distinct source IP addresses in the last 7 days. Severity is rated critical.

This CVE is on CISA's Known Exploited Vulnerabilities list.

Request paths that identify it

  • /api/v1/build_public_tmp//flow
  • /api/v1/build_public_tmp/00000000-0000-0000-0000-000000000000/flow

Addresses probing it

Source IPProbesNetworkCountry
172.71.124.2001Cloudflare, Inc.Singapore
34.89.245.2281Google LLCGermany

Networks it comes from

ASNOrganisationProbesSource IPs
AS13335Cloudflare, Inc.11
AS396982Google LLC11

Captured requests

  • /api/v1/build_public_tmp/00000000-0000-0000-0000-000000000000/flow

CVE report

CVE report

Open a specific CVE from the CVE tracker.