CVE-2026-5027: Langflow <= 1.8.4 - Path Traversal to RCE via File Upload
HoneyLabs honeypots recorded 5 probes matching CVE-2026-5027 from 2 distinct source IP addresses in the last 7 days. Severity is rated high.
Request paths that identify it
- /api/v2/files
- /api/v1/auto_login
Addresses probing it
| Source IP | Probes | Network | Country |
|---|---|---|---|
| 176.65.148.226 | 4 | Pfcloud UG (haftungsbeschrankt) | The Netherlands |
| 174.172.60.127 | 1 | Comcast Cable Communications, LLC | United States |
Networks it comes from
| ASN | Organisation | Probes | Source IPs |
|---|---|---|---|
| AS51396 | Pfcloud UG (haftungsbeschrankt) | 4 | 1 |
| AS7922 | Comcast Cable Communications, LLC | 1 | 1 |
Captured requests
- /api/v1/auto_login
HTTP client fingerprints (JA4H)
- ge11nn0200_f24fcf356134
- ge11nn0500_cac2c496544b
CVE report
CVE report
Open a specific CVE from the CVE tracker.