Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

FlowiseAI — Vulnerabilities & Security Advisories 119

Browse all 119 CVE security advisories affecting FlowiseAI. AI-powered Chinese analysis, POCs, and references for each vulnerability.

FlowiseAI is an open-source platform designed to simplify the development of custom Large Language Model applications by enabling users to construct complex AI workflows through a visual drag-and-drop interface. This accessibility, however, has correlated with a significant security footprint, currently encompassing 43 recorded Common Vulnerabilities and Exposures. Historical analysis reveals that these flaws predominantly stem from insufficient input validation and improper access controls, leading to frequent instances of Remote Code Execution and Cross-Site Scripting. Additionally, several incidents highlight critical privilege escalation risks where authenticated users could bypass intended restrictions to access sensitive system resources. The platform’s modular architecture often introduces supply chain dependencies that further expand the attack surface. While the tool facilitates rapid AI integration, its security posture remains a concern for enterprises, necessitating rigorous patch management and strict network segmentation to mitigate the potential for exploitation in production environments.

Top products by FlowiseAI: Flowise FlowiseChatEmbed
CVE ID Title CVSS Severity Published
CVE-2026-100610 Flowise through 3.1.4 Missing Authorization via upsert-history — Flowise CWE-639 7.5 High 2026-09-26
CVE-2026-100609 Flowise through 3.1.4 Insecure Direct Object Reference via Credential — Flowise CWE-639 6.8 Medium 2026-09-26
CVE-2026-100608 Flowise through 3.1.4 Authorization Bypass via BullMQ Dashboard — Flowise CWE-862 8.3 High 2026-09-26
CVE-2026-100607 Flowise through 3.1.4 Authentication Bypass via Email-Only SSO — Flowise CWE-287 7.7 High 2026-09-26
CVE-2026-100606 Flowise through 3.1.4 Authentication Bypass via SSO Email Match — Flowise CWE-287 7.7 High 2026-09-26
CVE-2026-100605 Flowise through 3.1.4 Missing Authorization via Chat Message Routes — Flowise CWE-862 7.1 High 2026-09-26
CVE-2026-91938 Flowise before 3.1.4 Server-Side Request Forgery via document loaders — Flowise CWE-918 7.1 High 2026-09-15
CVE-2026-91937 Flowise before 3.1.4 NoSQL Injection via sessionId — Flowise CWE-943 7.5 High 2026-09-15
CVE-2026-91936 Flowise before 3.1.4 Script Injection via Docker Workflows — Flowise CWE-78 6.8 Medium 2026-09-15
CVE-2026-91934 Flowise before 3.1.4 Remote Code Execution via SQL Database Chain — Flowise CWE-22 8.8 High 2026-09-15
CVE-2026-91935 Flowise before 3.1.4 SSRF and API Key Exfiltration via Chat Model Nodes — Flowise CWE-918 8.3 High 2026-09-15
CVE-2026-91933 Flowise before 3.1.4 Authorization Bypass via openai-realtime — Flowise CWE-639 7.1 High 2026-09-15
CVE-2026-91931 Flowise before 3.1.4 Remote Code Execution via Custom MCP npx — Flowise CWE-78 8.5 High 2026-09-15
CVE-2026-91932 Flowise before 3.1.4 Remote Code Execution via cwd Parameter — Flowise CWE-20 8.5 High 2026-09-15
CVE-2026-91930 Flowise before 3.1.4 Cross-Tenant Organization Admin Takeover — Flowise CWE-266 7.5 High 2026-09-15
CVE-2026-91929 Flowise before 3.1.4 Cross-Tenant Authorization Bypass — Flowise CWE-862 7.1 High 2026-09-15
CVE-2026-90580 FlowiseAI Flowise Evaluations Endpoint index.ts axios.post server-side request forgery — Flowise CWE-918 6.3 Medium 2026-09-13
CVE-2026-90535 Flowise before 3.1.4 Denial of Service via text-to-speech/abort — Flowise CWE-862 6.3 Medium 2026-09-12
CVE-2026-90534 Flowise before 3.1.4 Cross-Workspace Credential IDOR via node-load-method — Flowise CWE-639 6.1 Medium 2026-09-12
CVE-2026-90533 Flowise before 3.1.4 Broken Access Control via organizationuser — Flowise CWE-862 6.0 Medium 2026-09-12
CVE-2026-73604 Flowise before 3.1.3 Credential Exposure via API — Flowise CWE-200 6.5 Medium 2026-08-13
CVE-2026-73602 Flowise before 3.1.3 Sandbox Escape to RCE — Flowise CWE-95 9.0 Critical 2026-08-13
CVE-2026-73603 Flowise before 3.1.4 Credential Abuse via Text-to-Speech — Flowise CWE-862 6.3 Medium 2026-08-13
CVE-2026-73601 Flowise before 3.1.3 Remote Code Execution via Custom MCP — Flowise CWE-95 9.0 Critical 2026-08-13
CVE-2026-73487 Flowise before 3.1.3 Prompt Injection RCE via CSV Agent — Flowise CWE-94 9.0 Critical 2026-08-13
CVE-2026-73488 Flowise before 3.1.3 IDOR via customer-default-source endpoint — Flowise CWE-639 6.0 Medium 2026-08-13
CVE-2026-73486 Flowise before 3.1.3 Code Injection via CSV Agent customReadCSV — Flowise CWE-94 9.0 Critical 2026-08-13
CVE-2026-73484 Flowise before 3.1.3 Sandbox Escape via Pandas Methods — Flowise CWE-184 8.6 High 2026-08-13
CVE-2026-73485 Flowise before 3.1.3 Remote Code Execution via Airtable Agent — Flowise CWE-94 9.0 Critical 2026-08-13
CVE-2026-73483 Flowise before 3.1.3 Sandbox Escape via Puppeteer — Flowise CWE-78 9.4 Critical 2026-08-13

This page lists every published CVE security advisory associated with FlowiseAI. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.