CVE-2026-8027
MEDIUM
NVD
CVSS Score
4.3
Severity
MEDIUM
Published
May 06, 2026
Vendor
unknown
Description
A weakness has been identified in FlowiseAI Flowise up to 3.0.12. Affected by this vulnerability is an unknown functionality of the component User Controller Handler. This manipulation of the argument userId/organizationId/workspaceId/email causes authorization bypass. The attack may be initiated remotely. The affected component should be upgraded.