216.73.216.233

CVE-2026-42156

· Published 12/05/2026 23:16 · Modified 13/05/2026 16:10

Labels: CVE-2026-42156 2026-05-12CVE-2026-42156CWE-943[email protected]

Essential information

Published
12/05/2026 23:16
Modified
13/05/2026 16:10
Author
Creator
CVSS
7.1 HIGH (v3) 7.1 HIGH (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

Flowsint is an open-source OSINT graph exploration tool designed for cybersecurity investigation, transparency, and verification. Prior to 1.2.3, a remote attacker can create a node with a malicious type that can escape an existing Cypher query and an adversary can execute an arbitrary Cypher query. This vulnerability is fixed in 1.2.3.

NVD status

Status
Deferred — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
flowsint / flowsint cpe:2.3:a:flowsint:flowsint:<1.2.3:*:*:*:*:*:*:*

References