A vulnerability, which was classified as problematic , has been found in langgenius dify up to 1.14.1 . This vulnerability affects unknown code of the component Trace Configuration Endpoint . This manipulation causes authorization bypass. This vulnerability is tracked as CVE-2026-41947 . The attack is possible to be carried out remotely. No exploit exists. Applying a patch is the recommended action to fix this issue.