CVE-2026-42158

Severity CVSS v4.0:
LOW
Type:
CWE-284 Improper Access Control
Publication date:
12/05/2026
Last modified:
12/05/2026

Description

Flowsint is an open-source OSINT graph exploration tool designed for cybersecurity investigation, transparency, and verification. Prior to 1.2.3, an adversary with knowledge of an investigation ID, could update the metadata of an investigation of another user. This vulnerability is fixed in 1.2.3.