Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Flowise — Vulnerabilities & Security Advisories 137

All 137 CVE vulnerabilities found in Flowise, with AI-generated Chinese analysis, references, and POCs.

This page aggregates known security weaknesses for Flowise, an open-source generative AI workflow automation platform, primarily focusing on server-side request forgery and injection flaws. It collects publicly disclosed advisories spanning from 2023 to the present, covering critical issues such as remote code execution risks in its workflow engine and API endpoints. Here, readers can track the vendor’s historical advisory release patterns, understand the specific class of vulnerabilities affecting this product, and review the full timeline of disclosed defects without navigating between separate databases. The collection emphasizes practical remediation guidance, linking each entry to corresponding patches and version upgrades. By centralizing these records, the page supports security teams in assessing whether a specific release resolves previously identified gaps. No marketing language is used; the focus remains strictly on factual vulnerability data and its evolution over time.

Vendor: FlowiseAI

CVE ID Title CVSS Severity Published
CVE-2026-91938 Flowise before 3.1.4 Server-Side Request Forgery via document loaders CWE-918 7.1 High 2026-09-15
CVE-2026-91937 Flowise before 3.1.4 NoSQL Injection via sessionId CWE-943 7.5 High 2026-09-15
CVE-2026-91936 Flowise before 3.1.4 Script Injection via Docker Workflows CWE-78 6.8 Medium 2026-09-15
CVE-2026-91935 Flowise before 3.1.4 SSRF and API Key Exfiltration via Chat Model Nodes CWE-918 8.3 High 2026-09-15
CVE-2026-91934 Flowise before 3.1.4 Remote Code Execution via SQL Database Chain CWE-22 8.8 High 2026-09-15
CVE-2026-91933 Flowise before 3.1.4 Authorization Bypass via openai-realtime CWE-639 7.1 High 2026-09-15
CVE-2026-91932 Flowise before 3.1.4 Remote Code Execution via cwd Parameter CWE-20 8.5 High 2026-09-15
CVE-2026-91931 Flowise before 3.1.4 Remote Code Execution via Custom MCP npx CWE-78 8.5 High 2026-09-15
CVE-2026-91930 Flowise before 3.1.4 Cross-Tenant Organization Admin Takeover CWE-266 7.5 High 2026-09-15
CVE-2026-91929 Flowise before 3.1.4 Cross-Tenant Authorization Bypass CWE-862 7.1 High 2026-09-15
CVE-2026-90580 FlowiseAI Flowise Evaluations Endpoint index.ts axios.post server-side request forgery CWE-918 6.3 Medium 2026-09-13
CVE-2026-90535 Flowise before 3.1.4 Denial of Service via text-to-speech/abort CWE-862 6.3 Medium 2026-09-12
CVE-2026-90534 Flowise before 3.1.4 Cross-Workspace Credential IDOR via node-load-method CWE-639 6.1 Medium 2026-09-12
CVE-2026-90533 Flowise before 3.1.4 Broken Access Control via organizationuser CWE-862 6.0 Medium 2026-09-12
CVE-2026-73604 Flowise before 3.1.3 Credential Exposure via API CWE-200 6.5 Medium 2026-08-13
CVE-2026-73602 Flowise before 3.1.3 Sandbox Escape to RCE CWE-95 9.0 Critical 2026-08-13
CVE-2026-73603 Flowise before 3.1.4 Credential Abuse via Text-to-Speech CWE-862 6.3 Medium 2026-08-13
CVE-2026-73601 Flowise before 3.1.3 Remote Code Execution via Custom MCP CWE-95 9.0 Critical 2026-08-13
CVE-2026-73488 Flowise before 3.1.3 IDOR via customer-default-source endpoint CWE-639 6.0 Medium 2026-08-13
CVE-2026-73487 Flowise before 3.1.3 Prompt Injection RCE via CSV Agent CWE-94 9.0 Critical 2026-08-13
CVE-2026-73486 Flowise before 3.1.3 Code Injection via CSV Agent customReadCSV CWE-94 9.0 Critical 2026-08-13
CVE-2026-73485 Flowise before 3.1.3 Remote Code Execution via Airtable Agent CWE-94 9.0 Critical 2026-08-13
CVE-2026-73484 Flowise before 3.1.3 Sandbox Escape via Pandas Methods CWE-184 8.6 High 2026-08-13
CVE-2026-73483 Flowise before 3.1.3 Sandbox Escape via Puppeteer CWE-78 9.4 Critical 2026-08-13
CVE-2026-71962 Flowise 2.2.4 - 3.1.4 Missing Authorization via openai-assistants-file/download CWE-862 7.5 High 2026-08-10
CVE-2026-67620 Flowise 3.1.4 SSRF via fetch-links Endpoint Incomplete Deny-List CWE-918 7.7 High 2026-08-08
CVE-2026-70636 Flowise 3.1.4 Authentication Bypass via OAuth2 Credential Refresh Endpoint CWE-862 7.5 High 2026-08-06
CVE-2026-67622 Flowise 3.1.4 IDOR in OpenAI Assistants Integration CWE-639 9.9 Critical 2026-08-06
CVE-2026-67621 Flowise 3.1.4 Missing Authorization on Document Store Mutation Endpoints CWE-862 7.6 High 2026-08-06
CVE-2026-70478 Flowise: Unauthenticated OAuth2 token refresh endpoint returns access tokens — enables token theft for any connected service CWE-200 9.2 Critical 2026-08-04

All 137 known CVE vulnerabilities affecting Flowise with full Chinese analysis, references, and POCs where available.