An Authentication Bypass vulnerability exists in Flowise version 1.8.2. This could allow a remote, unauthenticated attacker to access API endpoints as an administrator and allow them to access restricted functionality.
References
Link | Resource |
---|---|
https://tenable.com/security/research/tra-2024-33 |
Configurations
History
No history.
Information
Published : 2024-08-27 13:15
Updated : 2024-09-06 15:35
NVD link : CVE-2024-8181
Mitre link : CVE-2024-8181
CVE.ORG link : CVE-2024-8181
JSON object : View
Products Affected
flowiseai
- flowise
CWE
CWE-287
Improper Authentication