| Summary | Flowsint is an open-source OSINT graph exploration tool designed for cybersecurity investigation, transparency, and verification. Prior to 1.2.3, a remote attacker can create a map node with a malicious label that contains arbitrary HTML. When the map tab is selected and a map node marker is selected, it will render the arbitrary HTML, potentially triggering stored XSS. This vulnerability is fixed in 1.2.3. |
|---|---|
| Publication Date | May 13, 2026, 8:16 a.m. |
| Registration Date | May 15, 2026, 4:19 a.m. |
| Last Update | May 14, 2026, 1:10 a.m. |