Launch Week Day 1: Announcing Security Design Review
HIGH 7.5 npm

Flowise Unauthenticated Denial of Service (DoS) vulnerability

GHSA-48x4-mx8f-gr4h · CVE-2024-8182

Published · Modified

Description

An Unauthenticated Denial of Service (DoS) vulnerability exists in Flowise version 1.8.2 leading to a complete crash of the instance running a vulnerable version due to improper handling of user supplied input to the /api/v1/get-upload-file api endpoint.

Ready to move

Start Securing

Free, no credit card | First findings in minutes