CVE-2026-30822 - Flowise: Mass Assignment in `/api/v1/leads` Endpoint

CVE-2026-30822 - Flowise: Mass Assignment in `/api/v1/leads` Endpoint

CVE ID :CVE-2026-30822 Published : 7 Mar 2026, 5:08 a.m. | 21 minutes ago Description :Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.0.13, unauthenticated users can inject arbitrary values into internal database fields when creating leads. This issue has been patched in version 3.0.13. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details