Vulnerabilities > Flowiseai > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-09-25 CVE-2024-9148 Cross-site Scripting vulnerability in Flowiseai Embed and Flowise
Flowise < 2.1.1 suffers from a Stored Cross-Site vulnerability due to a lack of input sanitization in Flowise Chat Embed < 2.0.0.
network
low complexity
flowiseai CWE-79
6.1
2024-07-01 CVE-2024-36423 Cross-site Scripting vulnerability in Flowiseai Flowise
Flowise is a drag & drop user interface to build a customized large language model flow.
network
low complexity
flowiseai CWE-79
6.1
2024-07-01 CVE-2024-37145 Cross-site Scripting vulnerability in Flowiseai Flowise
Flowise is a drag & drop user interface to build a customized large language model flow.
network
low complexity
flowiseai CWE-79
6.1
2024-07-01 CVE-2024-37146 Cross-site Scripting vulnerability in Flowiseai Flowise
Flowise is a drag & drop user interface to build a customized large language model flow.
network
low complexity
flowiseai CWE-79
6.1
2024-07-01 CVE-2024-36422 Cross-site Scripting vulnerability in Flowiseai Flowise 1.4.3
Flowise is a drag & drop user interface to build a customized large language model flow.
network
low complexity
flowiseai CWE-79
6.1