people · May 18, 2026
NVD Details CVE-2026-8026 Login Function Flaw in FlowiseAI up to 3.0.12
Share the canonical public link.
The National Vulnerability Database listed CVE-2026-8026 in FlowiseAI Flowise versions up to 3.0.12. The flaw resides in the Login function within packages/server/src/enterprise. A public gist by YLChen-007 provided proof-of-concept details on May 6, 2026. The issue affects the enterprise server component of the open-source GenAI development platform founded in 2023.
Spend governor blocked model creation: provider_circuit_open (lane=dev, provider=together)