
Proof-of-concept exploit and YARA detection rules for CVE-2025-59528, a remote code execution vulnerability in Flowise, intended for authorized security testing and research.
LEGAL DISCLAIMER AND TERMS OF USE
The Proof of Concept (PoC) code and technical information provided in this document are intended solely for educational purposes, academic research, and authorized security testing (penetration testing).
Prohibition of Unauthorized Use: Running this code against any target system, server, or network without explicit written permission and consent is strictly prohibited and constitutes a criminal offense under local and international cybercrime laws (e.g., TCK Articles 243/244, CMA, CFAA, etc.).
Limitation of Liability: The author or provider of this material shall not be held liable for any direct or indirect damages, data loss, or legal consequences arising from the unauthorized, improper, or malicious use of this information or code. Full responsibility rests entirely on the individual executing the code.
Recommended Usage: This PoC code should only be executed in isolated laboratory environments (local/sandbox) to verify the existence of the vulnerability (CVE-2025-59528) and test whether systems have been properly patched.
note : ı am not tested this... maybe some errors? (maybe didnt work .... ehh )
BİO: