CVE-2025-11898

Publication date

2025-10-17 03:41:53

Family

twcert

State

PUBLISHED

Description

Agentflow developed by Flowring has an Arbitrary File Reading vulnerability, allowing unauthenticated remote attackers to exploit Relative Path Traversal to download arbitrary system files.