Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Flowise — Vulnerabilities & Security Advisories 137

All 137 CVE vulnerabilities found in Flowise, with AI-generated Chinese analysis, references, and POCs.

This page aggregates known security weaknesses for Flowise, an open-source generative AI workflow automation platform, primarily focusing on server-side request forgery and injection flaws. It collects publicly disclosed advisories spanning from 2023 to the present, covering critical issues such as remote code execution risks in its workflow engine and API endpoints. Here, readers can track the vendor’s historical advisory release patterns, understand the specific class of vulnerabilities affecting this product, and review the full timeline of disclosed defects without navigating between separate databases. The collection emphasizes practical remediation guidance, linking each entry to corresponding patches and version upgrades. By centralizing these records, the page supports security teams in assessing whether a specific release resolves previously identified gaps. No marketing language is used; the focus remains strictly on factual vulnerability data and its evolution over time.

Vendor: FlowiseAI

CVE ID Title CVSS Severity Published
CVE-2026-70477 Flowise: CSV Agent Prompt Injection Remote Code Execution Vulnerability CWE-94 9.5 Critical 2026-08-04
CVE-2026-70476 Flowise: Broken Access Control in Stripe Subscription Endpoints Allows Cross-Tenant Billing Manipulation CWE-284 8.3 High 2026-08-04
CVE-2026-70475 Flowise: Missing Authorization on Execution Update Endpoint CWE-862 7.1 High 2026-08-04
CVE-2026-70474 Flowise: Cross-Workspace OAuth2 Credential Metadata Leak CWE-863 7.6 High 2026-08-04
CVE-2026-70473 Flowise: Information Disclosure in GET /api/v1/upsert-history returns the entire server-wide upsert history CWE-200 8.3 High 2026-08-04
CVE-2026-70472 Flowise: Cross-workspace credential IDOR in openai-assistants-vector-store CWE-285 7.1 High 2026-08-04
CVE-2026-70471 Flowise: RBAC Bypass Leading to Unauthorized Workspace Variables Disclosure CWE-863 7.1 High 2026-08-04
CVE-2026-70470 Flowise: Pyodide validator Unicode homoglyph bypass leads to RCE CWE-184 9.5 Critical 2026-08-04
CVE-2026-69264 Flowise: RCE via CSVAgent csvFile data URI base64 segment is interpolated into Python source without validation CWE-94 9.4 Critical 2026-08-04
CVE-2026-69263 Flowise: CVE-2025-8943 Patch Bypass: npm_config_yes bypasses MCP environment variable blocklist (Unauthenticated RCE) CWE-184 8.7 High 2026-08-04
CVE-2026-69262 Flowise: `DELETE /api/v1/chatflows/:id` does not validate resource type, allowing `agentflows:delete` and `chatflows:delete` to delete each other’s flow type CWE-863 7.1 High 2026-08-04
CVE-2026-69259 Flowise RCE via SQLite Record Manager Node CWE-94 9.4 Critical 2026-08-04
CVE-2026-69258 Flowise: Unauthenticated Property Injection into Flow Execution Context via Ungated `overrideConfig` Spread in Prediction API CWE-639 8.8 High 2026-08-04
CVE-2026-69257 Flowise: SSRF Protection Bypass via IPv4-Mapped IPv6 Addresses CWE-918 7.6 High 2026-08-04
CVE-2026-69256 Flowise: Remote Code Execution Vulnerability in CSVAgent CWE-94 9.4 Critical 2026-08-04
CVE-2026-69255 Flowise: CSV Agent Remote Code Execution via Pyodide Code Injection — Root Shell Verified CWE-94 9.2 Critical 2026-08-04
CVE-2026-69254 Flowise: RCE via NodeVM Sandbox Escape in executeJavaScriptCode() nodeVMOptions Override CWE-94 9.4 Critical 2026-08-04
CVE-2026-69253 Flowise Sandbox Escape to RCE CWE-95 9.0 Critical 2026-08-04
CVE-2026-69252 Flowise: Missing authorization on `/api/v1/files` allows low-privileged API keys to list and delete files across workspaces within the same organization CWE-862 7.2 High 2026-08-04
CVE-2026-69251 Flowise RCE via TypeORM DataSource CWE-94 9.0 Critical 2026-08-04
CVE-2026-69250 Flowise: Unauthenticated OAuth2 Refresh Enables Non-Blind SSRF and Secret Exfiltration CWE-639 8.5 High 2026-08-04
CVE-2026-56271 Flowise - Weak Default JWT Secrets in Authentication Middleware CWE-321 9.8 Critical 2026-07-12
CVE-2026-56273 Flowise - Path Traversal in Vector Store basePath Parameter CWE-22 6.5 Medium 2026-07-08
CVE-2026-56278 Flowise - Session Hijacking via Weak Default Express Session Secret CWE-798 9.1 Critical 2026-06-30
CVE-2026-56277 Flowise - Hardcoded CORS Wildcard in TTS Endpoint CWE-346 - - 2026-06-30
CVE-2026-58057 Flowise - Custom MCP Environment Variable Denylist Bypass via Case Sensitivity CWE-178 5.0 Medium 2026-06-28
CVE-2025-71336 Flowise - Unsandboxed Remote Code Execution via Custom MCP CWE-78 9.8 Critical 2026-06-25
CVE-2025-71338 Flowise through 2.2.7 - Arbitrary File Write to Remote Code Execution via document-store API CWE-73 10.0 Critical 2026-06-25
CVE-2025-71334 Flowise - Arbitrary File Access via Missing Chat Flow ID Validation CWE-73 9.8 Critical 2026-06-25
CVE-2025-71335 Flowise - Session Invalidation Failure After Password Change CWE-613 8.1 High 2026-06-25

All 137 known CVE vulnerabilities affecting Flowise with full Chinese analysis, references, and POCs where available.