CVE-2026-30822

Publication date

2026-03-07 05:08:55

Family

GitHub_M

State

PUBLISHED

Description

Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.0.13, unauthenticated users can inject arbitrary values into internal database fields when creating leads. This issue has been patched in version 3.0.13.