Langflow is vulnerable to unauthorized file system access due to path traversal and missing storage path validation (CVE-2026-9225) | HOL Guard CVE