All 6 CVE vulnerabilities found in flowsint, with AI-generated Chinese analysis, references, and POCs.
Vendor: reconurge
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-42159 | Flowsint: Stored XSS in description of node CWE-79 | - | - | 2026-05-14 |
| CVE-2026-42158 | Flowsint: Broken Access Control allows modification of investigation metadata from any user CWE-284 | - | - | 2026-05-12 |
| CVE-2026-42156 | Flowsint: Cypher query injection in node type on node creation CWE-943 | - | - | 2026-05-12 |
| CVE-2026-42157 | Flowsint: Stored XSS on map node marker in map page CWE-79 | - | - | 2026-05-12 |
| CVE-2026-44352 | Flowsint: Broken Access Control allows reading of sketch logs from any user CWE-284 | - | - | 2026-05-12 |
| CVE-2026-32311 | Command Injection and Docker container escape allows root on host machine CWE-78 | 8.8AI | High AI | 2026-04-20 |
All 6 known CVE vulnerabilities affecting flowsint with full Chinese analysis, references, and POCs where available.