[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fxXxsssAh0_ePiS02NVVVcWA8LxqI32vFq3v6Hx_yaBY":3},{"article":4,"iocs":41,"watch_terms":49},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":11,"url":12,"image_url":13,"published_at":14,"ingested_at":15,"relevance_score":16,"entities":17,"category_id":21,"category":22,"article_tags":25},"2974369e-ad6d-41e0-b6e9-1eb04340cac8","‼️ CVE-2025-58434 and CVE-2025-59528: Flowise Dual CVE PoC\n\nGitHub: https:\u002F\u002Ft.co\u002FdklzVorfjf\n\nThe...","cve-2025-58434-and-cve-2025-59528-flowise-dual-cve-poc-github-https-t-co-dklzvor-50c7f8","‼️ CVE-2025-58434 and CVE-2025-59528: Flowise Dual CVE PoC\n\nGitHub: https:\u002F\u002Ft.co\u002FdklzVorfjf\n\nThe two vulnerabilities chain naturally: CVE-2025-58434 provides unauthenticated account takeover, which satisfies the authentication requirement for CVE-2025-59528, achieving https:\u002F\u002Ft.co\u002FZ6pxCs1wtI","Two critical vulnerabilities in Flowise (CVE-2025-58434 and CVE-2025-59528) have been publicly disclosed with proof-of-concept code. CVE-2025-58434 enables unauthenticated account takeover, which can then be leveraged to satisfy authentication requirements for CVE-2025-59528, resulting in remote code execution.","Flowise dual CVE PoC demonstrates chained unauthenticated account takeover and RCE.",null,"https:\u002F\u002Fx.com\u002FDarkWebInformer\u002Fstatus\u002F2044096903944478842","https:\u002F\u002Fpbs.twimg.com\u002Fmedia\u002FHF4XAopWEAEGz3d.png","2026-04-14T16:54:14+00:00","2026-04-14T17:00:11.374478+00:00",9,[18],{"name":19,"type":20},"Flowise","product","80544778-fabb-4dcd-aa35-17492e5dcf4f",{"id":21,"icon":11,"name":23,"slug":24},"Vulnerabilities","vulnerabilities",[26,31,36],{"category":27},{"id":28,"icon":11,"name":29,"slug":30},"26b0b636-0e31-4db1-bffb-61bdf9f20a58","Supply Chain","supply-chain",{"category":32},{"id":33,"icon":11,"name":34,"slug":35},"574f766a-fb3f-487c-8d2c-0720ae75471b","Zero-day","zero-day",{"category":37},{"id":38,"icon":11,"name":39,"slug":40},"ade75414-7914-4e23-a450-48b64546ee70","Open Source","open-source",[42,46],{"type":43,"value":44,"context":45},"cve","CVE-2025-58434","Unauthenticated account takeover in Flowise",{"type":43,"value":47,"context":48},"CVE-2025-59528","Remote code execution in Flowise, requires prior authentication",[19]]