Ghostwire

CVE-2026-55235: langgraph-api: Relative webhook targets in LangGraph Server can reach in-process routes without authentication

MEDIUM CVSS 5.9 Exploit Available

Published: August 19, 2026 | Last Modified: August 19, 2026

Description

langgraph-api: Relative webhook targets in LangGraph Server can reach in-process routes without authentication

Ghostwire Analysis — What This Means Practically

This analysis is generated by Ghostwire from NVD, CISA KEV, EPSS, and open-source intelligence data. Verify findings through primary sources before acting.

References