Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-8028

Опубликовано: 06 мая 2026
Источник: nvd
CVSS3: 3.7
CVSS2: 2.6
EPSS Низкий

Описание

A vulnerability was detected in FlowiseAI Flowise up to 3.0.12. This affects the function verify of the file packages/server/src/enterprise/services/account.service.ts of the component Endpoint. Performing a manipulation results in information disclosure. Remote exploitation of the attack is possible. The attack is considered to have high complexity. It is indicated that the exploitability is difficult. The exploit is now public and may be used. Upgrading the affected component is recommended.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:flowiseai:flowise:*:*:*:*:*:*:*:*
Версия до 3.0.12 (включая)

EPSS

Процентиль: 33%
0.00401
Низкий

3.7 Low

CVSS3

2.6 Low

CVSS2

Дефекты

CWE-200
NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 3.7
github
3 месяца назад

A vulnerability was detected in FlowiseAI Flowise up to 3.0.12. This affects the function verify of the file packages/server/src/enterprise/services/account.service.ts of the component Endpoint. Performing a manipulation results in information disclosure. Remote exploitation of the attack is possible. The attack is considered to have high complexity. It is indicated that the exploitability is difficult. The exploit is now public and may be used. Upgrading the affected component is recommended.

EPSS

Процентиль: 33%
0.00401
Низкий

3.7 Low

CVSS3

2.6 Low

CVSS2

Дефекты

CWE-200
NVD-CWE-noinfo