B3NCLOUD ARTICLE INTELLIGENCE

ARTICLEVIEW

Zurück zu News

CVE-2025-71334 - Flowise - Arbitrary File Access via Missing Chat Flow ID Validation

CVE ID :CVE-2025-71334 Published : June 25, 2026, 9:41 p.m. | 1 hour, 30 minutes ago Description :Flowise before 3.0.6 (affected versions 2.2.8 and earlier) contains an arbitrary file access vulnerability due to missing validation that the chatflowId and chatId parameters are UUIDs or numbers...

Original-Artikel öffnen Zurück zur Übersicht