NVD Vulnerability Detail
Search Exploit, PoC
CVE-2026-42157
Summary

Flowsint is an open-source OSINT graph exploration tool designed for cybersecurity investigation, transparency, and verification. Prior to 1.2.3, a remote attacker can create a map node with a malicious label that contains arbitrary HTML. When the map tab is selected and a map node marker is selected, it will render the arbitrary HTML, potentially triggering stored XSS. This vulnerability is fixed in 1.2.3.

Publication Date May 13, 2026, 8:16 a.m.
Registration Date May 15, 2026, 4:19 a.m.
Last Update May 14, 2026, 1:10 a.m.
Related information, measures and tools
Common Vulnerabilities List