Critical
Low
Medium
CVE-2025-58434
Overview
Flowise is a drag & drop user interface to build a customized large language model flow. In version 3.0.5 and earlier, the `forgot-password` endpoint in Flowise returns sensitive information including a valid password reset `tempToken` without authentication or verification. This enables any attacke...
Critical
Low
Medium
No items found.