
Flowiseに報告した脆弱性にCVEが採番されました(CVE-2026-41273) Unauthenticated OAuth 2.0 Access Token Disclosure via Public Chatflow in Flowise https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-6f7g-v4pp-r667
Post summary
The advisory announces CVE‑2026‑41273 for Flowise, detailing an unauthenticated OAuth 2.0 access token disclosure stemming from public chatflow usage, with no mention of exploit code, active exploitation, or patch.

