Miggo Logo

CVE-2025-61687: FlowiseAI/Flosise has File Upload vulnerability

8.3

CVSS Score
3.1

Basic Information

EPSS Score
0.44986%
Published
10/8/2025
Updated
10/8/2025
KEV Status
No
Technology
TechnologyJavaScript

Technical Details

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H
Package NameEcosystemVulnerable VersionsFirst Patched Version
flowisenpm= 3.0.7

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

### Summ*ry * *il* uplo** vuln*r**ility in *lowis**I *llows *ut**nti**t** us*rs to uplo** *r*itr*ry *il*s wit*out prop*r v*li**tion. T*is *n**l*s *tt**k*rs to p*rsist*ntly stor* m*li*ious No**.js w** s**lls on t** s*rv*r, pot*nti*lly l***in* to R*mot

Reasoning

No *n*lysis *v*il**l*