Tracking
Sign in to view the affected projects.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
Please refer to the following official instructions and take the appropriate mitigation measures: https://forum.flowring.com/post/view?bid=72&id=45611&tpg=1&ppg=1&sty=1#45939
Fri, 13 Feb 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:flowring:agentflow:*:*:*:*:*:*:*:* |
Tue, 10 Feb 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 10 Feb 2026 12:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Flowring
Flowring agentflow |
|
| Vendors & Products |
Flowring
Flowring agentflow |
Tue, 10 Feb 2026 07:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Agentflow developed by Flowring has an Authentication Bypass vulnerability, allowing unauthenticated remote attackers to exploit a specific functionality to obtain arbitrary user authentication token and log into the system as any user. | |
| Title | Flowring|Agentflow - Authentication Bypass | |
| Weaknesses | CWE-288 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: twcert
Published:
Updated: 2026-02-10T19:34:22.341Z
Reserved: 2026-02-06T11:02:46.628Z
Link: CVE-2026-2095
Updated: 2026-02-10T19:34:18.003Z
Status : Analyzed
Published: 2026-02-10T07:16:13.903
Modified: 2026-02-13T20:53:19.297
Link: CVE-2026-2095
No data.
OpenCVE Enrichment
Updated: 2026-02-10T11:34:29Z