CVE-2026-2099

Publication date

2026-02-10 07:09:51

Family

twcert

State

PUBLISHED

Description

AgentFlow developed by Flowring has a Stored Cross-Site Scripting vulnerability, allowing authenticated remote attackers to inject persistent JavaScript codes that are executed in users browsers upon page load.