Flowise是FlowiseAI开源的一个用于轻松构建 LLM 应用程序的工具。 Flowise 3.1.2之前版本存在代码注入漏洞,该漏洞源于POST /api/v1/node-custom-function端点缺乏路由级授权,可能导致远程代码执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, POST /api/v1/node-custom-function lacks route-level authorization, allowing any authenticated user or API key to submit arbitrary JavaScript to the Custom JS Function node. When E2B_APIKEY is not configured — the common deployment case — Flowise executes this code inside a NodeVM sandbox. This sandbox can be escaped, allowing an attacker to reach the host process object and execute system commands via child_process. The result is authenticated remote code execution on the Flowise server host. This issue has been patched in version 3.1.2. | https://github.com/projectdiscovery/nuclei-templates/blob/main/http/cves/2026/CVE-2026-46442.yaml | POC Details |
No public POC found.
Login to generate AI POC| CVE-2026-42862 | Flowise: Mass Assignment in Tool Update Endpoint Allows Cross-Workspace Resource Reassignm | |
| CVE-2026-42861 | Flowise: Mass Assignment in Variable Update Endpoint Allows Cross-Workspace Resource Reass | |
| CVE-2026-42863 | Flowise: Mass Assignment in Chatflow Update Endpoint Allows Cross-Workspace AgentFlow Reas | |
| CVE-2026-46476 | Flowise: CustomTemplate create+update mass-assignment allows cross-workspace template take | |
| CVE-2026-46479 | Flowise: Evaluation create+update mass-assignment allows cross-workspace evaluation takeov | |
| CVE-2026-46475 | Flowise: Assistant create+update mass-assignment allows cross-workspace assistant takeover | |
| CVE-2026-46444 | Flowise: Vector Store No Permission Checks | |
| CVE-2026-46478 | Flowise: DatasetRow create+update mass-assignment allows cross-workspace row takeover | |
| CVE-2026-46477 | Flowise: Dataset create+update mass-assignment allows cross-workspace dataset takeover | |
| CVE-2026-46480 | Flowise: Evaluator create+update mass-assignment allows cross-workspace evaluator takeover | |
| CVE-2026-46440 | Flowise: Basic Auth Credentials Exposed via API | |
| CVE-2026-46443 | Flowise: Credential Data Leak | |
| CVE-2026-46441 | Flowise: Mass Assignment in Assistant Update Endpoint Allows Cross-Workspace Resource Reas |
No comments yet