CVE-2026-69250 | FlowiseAI Flowise up to 3.1.2 OAuth2 Token Refresh Endpoint server-side request forgery
A vulnerability, which was classified as critical, has been found in FlowiseAI Flowise up to 3.1.2. Impacted is an unknown function of the component OAuth2 Token Refresh Endpoint. The manipulation leads to server-side request forgery.
This vulnerability is documented as CVE-2026-69250. The attack can be initiated remotely. There is not any exploit available.
It is advisable to upgrade the affected component.VulDB Recent EntriesRead More