• caglararli@hotmail.com
  • 05386281520

CVE-2024-37145 | FlowiseAI Flowise up to 1.4.3 404 Page id cross site scripting (GHSL-2023-232)

Çağlar Arlı      -    42 Views

CVE-2024-37145 | FlowiseAI Flowise up to 1.4.3 404 Page id cross site scripting (GHSL-2023-232)

A vulnerability classified as problematic has been found in FlowiseAI Flowise up to 1.4.3. Affected is an unknown function of the file /api/v1/chatflows-streaming/id of the component 404 Page. The manipulation leads to cross site scripting. This vulnerability is traded as CVE-2024-37145. It is possible to launch the attack remotely. There is no exploit available.