← CVE Tracker
8.2HIGH
CVE-2025-50538 — Flowise before 3.0.5 allows XSS via an IFRAME element when an admin views the chat log.
Flowiseai · Flowise · Published 6 Oct 2025 · Modified 30 Sept 2026
Flowiseai · Flowise · Published 6 Oct 2025 · Modified 30 Sept 2026