Executive brief
FlowiseAI is vulnerable to a credential data leak when fetching credentials using a specific filter, exposing encrypted sensitive information to authenticated users.
Affected products
- npm flowise
Junglewise Threat Intelligence
Severity: high · CVSS 7 · Published 2026-05-14
Technologies: flowise (npm). Vendors: npm.
FlowiseAI is vulnerable to a credential data leak when fetching credentials using a specific filter, exposing encrypted sensitive information to authenticated users.