Account Lockout Bypass Vulnerability in Agentflow by Flowring Technology
CVE-2025-3709
9.8CRITICAL
What is CVE-2025-3709?
Agentflow, a product by Flowring Technology, has been identified with a vulnerability that allows unauthenticated remote attackers to bypass account lockout mechanisms. This flaw can be exploited to carry out password brute force attacks, potentially compromising user accounts and sensitive information. It is crucial for users and administrators to remain vigilant and implement remediation measures to safeguard their systems.
Affected Version(s)
Agentflow 4.0
