Beveiligingsadvies

CVE-2026-8027

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-05-06 13:45:10
Laatst bijgewerkt 2026-05-06 15:26:30
Toegewezen door VulDB
CVSS-score 5.3
Status PUBLISHED

Beschrijving

A weakness has been identified in FlowiseAI Flowise up to 3.0.12. Affected by this vulnerability is an unknown functionality of the component User Controller Handler. This manipulation of the argument userId/organizationId/workspaceId/email causes authorization bypass. The attack may be initiated remotely. The affected component should be upgraded.