CVE-2025-3248 | langflow-ai langflow up to 1.2.0 HTTP Request /api/v1/validate/code missing authentication
A vulnerability has been found in langflow-ai langflow up to 1.2.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /api/v1/validate/code of the component HTTP Request Handler. The manipulation leads to missing authentication.
This vulnerability is known as CVE-2025-3248. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.