CYBERHAWK / CVE / CVE-2026-42861
CVE-2026-42861
CRITICAL
CVSS 9.6
other
The flaw
Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, a mass assignment vulnerability exists in the variable update endpoint of FlowiseAI. The endpoint allows authenticated users to
What to do
Review advisory and patch per vendor guidance.