GITHUBEXPLOIT 10 CRITICAL

Exploit for Code Injection in Flowiseai Flowise_0BE42E60-0AF7-5A6A-BDE6-3B3550243F5B

10 / 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Description

CVE-2025-59528 - FlowiseAI CustomMCP Remote Code Execution CVSS 10.0 Critical | Blind RCE | FlowiseAI Flowise = 2.2.7-patch.1 and = 2.2.7-patch.1, = 3.0.1 | Payload json "loadMethod": "listActions", "inputs": "mcpServerConfig": "x:functionconst...
Visit Original Source

Basic Information

ID 0BE42E60-0AF7-5A6A-BDE6-3B3550243F5B
Published Apr 13, 2026 at 11:32
Modified Apr 13, 2026 at 11:42

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.