Known Vulnerabilities for Agentflow by Flowring
Listed below are 3 of the newest known vulnerabilities associated with "Agentflow" by "Flowring".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2026-61437 json | PraisonAI (pip package praisonaiagents) before 1.6.78 contains an unsafe dynamic module loading vulnerability in AgentFlow._r... | Not Provided | 2026-07-10 | 2026-07-14 |
| CVE-2026-7466 json | AgentFlow contains an arbitrary code execution vulnerability that allows attackers to execute local Python pipeline files by ... | Not Provided | 2026-04-29 | 2026-04-30 |
| CVE-2026-7439 json | AgentFlow's local web API accepts non-JSON content types on POST /api/runs and POST /api/runs/validate endpoints without enfo... | Not Provided | 2026-04-29 | 2026-04-29 |
| CVE-2022-39038 json | Agentflow BPM enterprise management system has improper authentication. A remote attacker with general user privilege can cha... | 8.8 - HIGH | 2022-11-10 | 2022-11-15 |
| CVE-2022-39037 json | Agentflow BPM file download function has a path traversal vulnerability. An unauthenticated remote attacker can exploit this ... | 7.5 - HIGH | 2022-11-10 | 2022-11-15 |
| CVE-2022-39036 json | The file upload function of Agentflow BPM has insufficient filtering for special characters in URLs. An unauthenticated remot... | 9.8 - CRITICAL | 2022-11-10 | 2022-11-15 |