Skip to content

Commit db08295

Browse files
Update modules/exploits/multi/http/flowise_custommcp_rce.rb
Co-authored-by: msutovsky-r7 <martin_sutovsky@rapid7.com>
1 parent 11c64b8 commit db08295

File tree

1 file changed

+1
-3
lines changed

1 file changed

+1
-3
lines changed

modules/exploits/multi/http/flowise_custommcp_rce.rb

Lines changed: 1 addition & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -83,9 +83,7 @@ def check
8383

8484
# Vulnerability introduced in 2.2.7-patch.1 (March 14, 2025) and fixed in 3.0.1 (May 29, 2025)
8585
# Note: Rex::Version parses "2.2.7-patch.1" as "2.2.7.pre.patch.1", so we check >= 2.2.7
86-
if (version >= Rex::Version.new('2.2.7') || version.to_s.include?('2.2.7')) && version < Rex::Version.new('3.0.1')
87-
return CheckCode::Appears('(affected: >= 2.2.7-patch.1 and < 3.0.1)')
88-
end
86+
return CheckCode::Appears('(affected: >= 2.2.7-patch.1 and < 3.0.1)') if (version >= Rex::Version.new('2.2.7') || version.to_s.include?('2.2.7')) && version < Rex::Version.new('3.0.1')
8987

9088
CheckCode::Safe("Version #{version} is not vulnerable")
9189
end

0 commit comments

Comments
 (0)