Flowise <= 2.2.3 is vulnerable to SQL Injection. via tableName parameter at Postgres_VectorStores.
{
"cwe_ids": [
"CWE-89"
],
"github_reviewed": true,
"github_reviewed_at": "2025-04-10T14:18:52Z",
"nvd_published_at": "2025-04-09T12:15:15Z",
"severity": "HIGH"
}