Launch Week Day 1: Announcing Security Design Review
UNKNOWN npm

FlowiseAI Flowise arbitrary file upload vulnerability

GHSA-69jq-qr7w-j7qh · CVE-2025-26319

Published · Modified

Description

FlowiseAI Flowise v2.2.6 was discovered to contain an arbitrary file upload vulnerability in /api/v1/attachments.

Ready to move

Start Securing

Free, no credit card | First findings in minutes