PatchSiren

Rheosoph CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Rheosoph CVE published 2026-08-19

CVE-2026-50173

CVE-2026-50173 Flow-Like Platform Vulnerability Debrief. The Flow-Like platform, prior to version 1.0.4, contains a high-severity vulnerability that allows app members with 'ExecuteEvents' permission to write or delete blobs under the app content prefix in Azure Blob Storage, even if they lack 'ReadFiles' and 'WriteFiles' permissions. This issue arises from the 'GET /api/v1/apps/{app_id}/invoke/presign' r [truncated]