CVE-2026-42158

Flowsint is an open-source OSINT graph exploration tool designed for cybersecurity investigation, transparency, and verification. Prior to 1.2.3, an adversary with knowledge of an investigation ID, could update the metadata of an investigation of another user. This vulnerability is fixed in 1.2.3.
CVSS

No CVSS.

Configurations

No configuration.

History

14 May 2026, 13:16

Type Values Removed Values Added
References () https://github.com/reconurge/flowsint/security/advisories/GHSA-5h6v-5hv3-3jjw - () https://github.com/reconurge/flowsint/security/advisories/GHSA-5h6v-5hv3-3jjw -

12 May 2026, 23:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-12 23:16

Updated : 2026-05-14 13:16


NVD link : CVE-2026-42158

Mitre link : CVE-2026-42158

CVE.ORG link : CVE-2026-42158


JSON object : View

Products Affected

No product.

CWE
CWE-284

Improper Access Control