CVE-2026-91197 | Flowable Engine up to 8.0.0 XML Parsing ProcessDiagramLayoutFactory.parseXml xml external entity reference
A vulnerability classified as critical was found in Flowable Engine up to 8.0.0. The impacted element is the function ProcessDiagramLayoutFactory.parseXml of the component XML Parsing. The manipulation results in xml external entity reference.
This vulnerability is reported as CVE-2026-91197. The attack can be launched remotely. No exploit exists.VulDB Recent EntriesRead More