cbcvebase.

Reconurge Flowsint vulnerabilities

6 known vulnerabilities affecting reconurge/flowsint.

Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH1MEDIUM3LOW1

Vulnerabilities

Page 1 of 1
CVE-2026-32311P2CRITICALCVSS 9.8fixed in b52cbbb904c8013b74308d58af88bc7dbb1b055c2026-04-20
CVE-2026-32311 [CRITICAL] CWE-78 CVE-2026-32311: Flowsint is an open-source OSINT graph exploration tool designed for cybersecurity investigation, tr Flowsint is an open-source OSINT graph exploration tool designed for cybersecurity investigation, transparency, and verification. Flowsint allows a user to create investigations, which are used to manage sketches and analyses. Sketches have controllable graphs, which are comprised of nodes and relationships. The sketches contain information on an O
nvd
CVE-2026-42156P3HIGHCVSS 7.1fixed in 1.2.32026-05-12
CVE-2026-42156 [HIGH] CWE-943 CVE-2026-42156: Flowsint is an open-source OSINT graph exploration tool designed for cybersecurity investigation, tr Flowsint is an open-source OSINT graph exploration tool designed for cybersecurity investigation, transparency, and verification. Prior to 1.2.3, a remote attacker can create a node with a malicious type that can escape an existing Cypher query and an adversary can execute an arbitrary Cypher query. This vulnerability is fixed in 1.2.3.
nvd
CVE-2026-44352P4MEDIUMCVSS 5.3fixed in 1.2.32026-05-12
CVE-2026-44352 [MEDIUM] CWE-284 CVE-2026-44352: Flowsint is an open-source OSINT graph exploration tool designed for cybersecurity investigation, tr Flowsint is an open-source OSINT graph exploration tool designed for cybersecurity investigation, transparency, and verification. Prior to 1.2.3, Broken Access Control allows reading of sketch logs from any user. This vulnerability is fixed in 1.2.3.
nvd
CVE-2026-42157P4MEDIUMCVSS 5.1fixed in 1.2.32026-05-12
CVE-2026-42157 [MEDIUM] CWE-79 CVE-2026-42157: Flowsint is an open-source OSINT graph exploration tool designed for cybersecurity investigation, tr Flowsint is an open-source OSINT graph exploration tool designed for cybersecurity investigation, transparency, and verification. Prior to 1.2.3, a remote attacker can create a map node with a malicious label that contains arbitrary HTML. When the map tab is selected and a map node marker is selected, it will render the arbitrary HTML, potentially tr
nvd
CVE-2026-42159P4MEDIUMCVSS 5.4fixed in 1.2.32026-05-14
CVE-2026-42159 [MEDIUM] CWE-79 CVE-2026-42159: Flowsint is an open-source OSINT graph exploration tool designed for cybersecurity investigation, tr Flowsint is an open-source OSINT graph exploration tool designed for cybersecurity investigation, transparency, and verification. Prior to 1.2.3, Flowsint allows a user to create investigations, which are used to manage sketches and analyses. Sketches have controllable graphs, which are comprised of nodes and relationships. The sketches contain infor
nvd
CVE-2026-42158P4LOWCVSS 2.3fixed in 1.2.32026-05-12
CVE-2026-42158 [LOW] CWE-284 CVE-2026-42158: Flowsint is an open-source OSINT graph exploration tool designed for cybersecurity investigation, tr Flowsint is an open-source OSINT graph exploration tool designed for cybersecurity investigation, transparency, and verification. Prior to 1.2.3, an adversary with knowledge of an investigation ID, could update the metadata of an investigation of another user. This vulnerability is fixed in 1.2.3.
nvd
Reconurge Flowsint vulnerabilities | cvebase