Agentflow developed by Flowring has an Arbitrary File Reading vulnerability, allowing unauthenticated remote attackers to exploit Relative Path Traversal to download arbitrary system files.
Metrics
Affected Vendors & Products
References
History
Fri, 17 Oct 2025 04:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Agentflow developed by Flowring has an Arbitrary File Reading vulnerability, allowing unauthenticated remote attackers to exploit Relative Path Traversal to download arbitrary system files. | |
Title | Flowring Technology|Agentflow - Arbitrary File Reading through Path Traversal | |
Weaknesses | CWE-23 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2025-10-17T03:41:53.022Z
Reserved: 2025-10-17T02:18:33.913Z
Link: CVE-2025-11898

No data.

Status : Received
Published: 2025-10-17T04:16:03.277
Modified: 2025-10-17T04:16:03.277
Link: CVE-2025-11898

No data.

No data.