GHSA-f6hc-c5jr-878p: Flowise: resetPassword Authentication Bypass Vulnerability
ZDI-CAN-28762: Flowise AccountService resetPassword Authentication Bypass Vulnerability
– ABSTRACT ————————————-
Trend Micro’s Zero Day Initiative has identified a vulnerability affecting the following products: Flowise - Flowise
– VULNERABILITY DETAILS ————————
- Version tested: 3.0.12
- Installer file: hxxps://github.com/FlowiseAI/Flowise
- Platform tested: NA
References
Code Behaviors & Features
Detect and mitigate GHSA-f6hc-c5jr-878p with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →