OffSeq | Adversary Tactics for Cyber Resilience[verified]@offseqDisclosure
All Flowring Agentflow versions are vulnerable to an authentication bypass (CVE-2026-2095) with remote attackers able to gain full access, and no patch is currently available.
CVE@CVEnewDisclosure
The text discloses that CVE-2026-2095 is an authentication bypass vulnerability in Agentflow, enabling remote attackers to exploit a specific functionality.
CRAC Learning - Tech@cracbotDisclosure
The post announces CVE-2026-2095 as a critical authentication bypass flaw in Flowring’s Agentflow, providing CVSS details but no PoC, exploit, or patch information.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
A new authentication bypass vulnerability in Agentflow (CVE‑2026‑2095) permits unauthorized user token retrieval, as reported on Vulmon.
The Hacker Wire@TheHackerWireDisclosure
The tweet announces CVE‑2026‑2095, an Authentication Bypass vulnerability in Agentflow, highlighting its critical severity but providing no details on PoC, exploitation, or mitigation.