Flowise 3.1.4 之前的版本在通过 SQL 数据库链节点连接 SQLite 数据库时,未对文件路径进行有效验证,使得经过身份验证的攻击者能够写入任意文件。攻击者可以将恶意的 SQLite 数据库写入系统目录,或将文件注入到 Web 根目录,从而执行命令或发起存储型跨站脚本(XSS)攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-91931 | 8.5 HIGH | Flowise before 3.1.4 Remote Code Execution via Custom MCP npx |
| CVE-2026-91932 | 8.5 HIGH | Flowise before 3.1.4 Remote Code Execution via cwd Parameter |
| CVE-2026-91935 | 8.3 HIGH | Flowise before 3.1.4 SSRF and API Key Exfiltration via Chat Model Nodes |
| CVE-2026-91930 | 7.5 HIGH | Flowise before 3.1.4 Cross-Tenant Organization Admin Takeover |
| CVE-2026-91937 | 7.5 HIGH | Flowise before 3.1.4 NoSQL Injection via sessionId |
| CVE-2026-91933 | 7.1 HIGH | Flowise before 3.1.4 Authorization Bypass via openai-realtime |
| CVE-2026-91929 | 7.1 HIGH | Flowise before 3.1.4 Cross-Tenant Authorization Bypass |
| CVE-2026-91938 | 7.1 HIGH | Flowise before 3.1.4 Server-Side Request Forgery via document loaders |
| CVE-2026-91936 | 6.8 MEDIUM | Flowise before 3.1.4 Script Injection via Docker Workflows |
No comments yet