[CYBERDIGEST]
⊞ Dashboard ⚡ Intelligence 📝 Reports 📚 Global Threats 💻 Hack Lab 🗄️ Resources ⌬ 0xJerry's Lab
📡 RSS Feed
System Online

Tag

#IDOR

articleHIGH 8.8

Critical IDOR Vulnerability in Langflow: CVE-2026-33760

A critical IDOR (Insecure Direct Object Reference) vulnerability, CVE-2026-33760, with a CVSS score of 8.8, was discovered in Langflow, a tool for building and deploying AI-powered agents and workflows. This vulnerability allows any authenticated user to read, modify, or permanently delete another user's data by supplying the target's resource ID or flow_id. The vulnerability is fixed in Langflow version 1.9.0. Organizations using Langflow should immediately upgrade to version 1.9.0 or later to mitigate this vulnerability.

Jun 24, 20261 source
blogMEDIUM 6.3

Understanding Insecure Direct Object Reference (IDOR) Vulnerability in praisonai-platform

This blog post explains the IDOR vulnerability in praisonai-platform, specifically in the label endpoints, and how it allows an attacker to edit, delete, and link labels across workspaces.

Jun 3, 20261 source
articleHIGH 7.6

Insecure Direct Object Reference in praisonai-platform Dependency Endpoints

The praisonai-platform is vulnerable to an Insecure Direct Object Reference (IDOR) attack in its dependency endpoints. This vulnerability allows an attacker to create, read, and delete dependencies across different workspaces, leading to potential data integrity and confidentiality issues.

Jun 2, 20261 source