Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-100608— Flowise through 3.1.4 Authorization Bypass via BullMQ Dashboard

Quick assessment

Affected
FlowiseAI Flowise
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Flowise 3.1.4 版本在 BullMQ 管理仪表板方面未实施正确的授权控制。当服务器以队列模式运行且启用了仪表板(即满足 MODE=queue、ENABLE_BULLMQ_DASHBOARD=true,且非云端模式 isCloud() 为 false)时,/admin/queues 挂载点仅由 verifyTokenForBullMQDashboard 中间件进行保护。该中间件仅验证 JWT 令牌的有效性,但并未执行任何角色、权限或工作区/组织范围的授权检查。此外,该挂载点位于 /api/v1/* 范围之

CVSS 8.3 · High EPSS 0.27% · P18

Affected Version Matrix 1

VendorProduct Version RangeStatus
FlowiseAI Flowise ≤ 3.1.4 affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-100608

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Flowise through 3.1.4 Authorization Bypass via BullMQ Dashboard
Source: CVE Program / CVE List V5
Vulnerability Description
Flowise through 3.1.4 does not enforce authorization on the BullMQ admin dashboard. When the server runs in queue mode with the dashboard enabled and not in cloud mode (MODE=queue, ENABLE_BULLMQ_DASHBOARD=true, and !isCloud()), the /admin/queues mount is protected only by the verifyTokenForBullMQDashboard middleware, which validates the JWT but performs no role, permission, or workspace/organization scoping check; the mount also lies outside /api/v1/* so the global API gate does not apply. As a result, any authenticated user — including the lowest-privileged member of any tenant — can reach the full Bull-Board UI and view all queues and job payloads across the entire instance, including chat inputs and overrideConfig (which may carry credentials and prompts), chatflow.flowData graph definitions with custom function source code, credential IDs and system prompts, chatIds, files, and the originating orgId/workspaceId. The dashboard's write actions (retry, remove, promote, clean) are likewise usable across tenants. No patched version is available as of the advisory.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L
Source: CVE Program / CVE List V5
Vulnerability Type
授权机制缺失
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
FlowiseAI Flowise 0 ~ 3.1.4 -

II. Public POCs for CVE-2026-100608

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-100608

请登录查看更多情报信息。

Vendor Advisories for CVE-2026-100608 (2)

Same Patch Batch · FlowiseAI · 2026-09-26 · 6 CVEs total

CVE-2026-100607 7.7 HIGH Flowise through 3.1.4 Authentication Bypass via Email-Only SSO
CVE-2026-100606 7.7 HIGH Flowise through 3.1.4 Authentication Bypass via SSO Email Match
CVE-2026-100610 7.5 HIGH Flowise through 3.1.4 Missing Authorization via upsert-history
CVE-2026-100605 7.1 HIGH Flowise through 3.1.4 Missing Authorization via Chat Message Routes
CVE-2026-100609 6.8 MEDIUM Flowise through 3.1.4 Insecure Direct Object Reference via Credential

IV. Related Vulnerabilities

V. Comments for CVE-2026-100608

No comments yet


Leave a comment