No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Wed, 06 May 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 06 May 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in FlowiseAI Flowise up to 3.0.12. This affects the function verify of the file packages/server/src/enterprise/services/account.service.ts of the component Endpoint. Performing a manipulation results in information disclosure. Remote exploitation of the attack is possible. The attack is considered to have high complexity. It is indicated that the exploitability is difficult. The exploit is now public and may be used. Upgrading the affected component is recommended. | |
| Title | FlowiseAI Flowise Endpoint account.service.ts verify information disclosure | |
| First Time appeared |
Flowiseai
Flowiseai flowise |
|
| Weaknesses | CWE-200 CWE-284 |
|
| CPEs | cpe:2.3:a:flowiseai:flowise:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Flowiseai
Flowiseai flowise |
|
| References |
| |
| Metrics |
cvssV2_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-05-06T14:35:31.158Z
Reserved: 2026-05-06T07:40:41.272Z
Link: CVE-2026-8028
Updated: 2026-05-06T14:35:27.498Z
Status : Received
Published: 2026-05-06T15:16:13.210
Modified: 2026-05-06T15:16:13.210
Link: CVE-2026-8028
No data.
OpenCVE Enrichment
Updated: 2026-05-06T16:00:06Z