Sploitus

CVE-2026-58579

No indexed exploits for CVE-2026-58579 yet

RAGFlow before 0.26.3 stores an agent pipeline (DSL) node name without sanitization: the agent update endpoint normalizes the submitted DSL via normalize_dsl, which only performs JSON serialization validation and preserves the node name verbatim. The dataflow-result web UI then renders that name into the "Rerun from current step" confirmation modal via dangerouslySetInnerHTML, and the i18next configuration sets escapeValue:false, so the value is inserted into the DOM without HTML encoding. An authenticated workspace user who can create or edit an agent can inject arbitrary JavaScript that executes in the session of another workspace member who opens the dataflow result and clicks rerun, enabling session/token theft and account takeover across the user trust boundary.

Affected products
Ragflow
Fix
Available
CVSS 3.1
5.4 MEDIUM
EPSS
0.2% (8th percentile)
Weakness
CWE-79
NVD status
Deferred
Published
2026-07-02
CVE-2026-58579 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2026-58579 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2026-58579 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.