Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-m93p-f6r3-69jp

Опубликовано: 10 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.7
CVSS3: 8.8

Описание

Agentflow developed by Flowring has an Arbitrary File Upload vulnerability, allowing authenticated remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.

Agentflow developed by Flowring has an Arbitrary File Upload vulnerability, allowing authenticated remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.

EPSS

Процентиль: 56%
0.00326
Низкий

8.7 High

CVSS4

8.8 High

CVSS3

Дефекты

CWE-434

Связанные уязвимости

CVSS3: 8.8
nvd
3 месяца назад

Agentflow developed by Flowring has an Arbitrary File Upload vulnerability, allowing authenticated remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server.

EPSS

Процентиль: 56%
0.00326
Низкий

8.7 High

CVSS4

8.8 High

CVSS3

Дефекты

CWE-434