Flowiseai

Flowise

146 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.69%
  • Veröffentlicht 15.09.2026 15:17:57
  • Zuletzt bearbeitet 16.09.2026 20:17:00

Flowise versions before 3.1.4 fail to validate file paths in the SQL Database Chain node when connecting to SQLite databases, allowing authenticated attackers to write arbitrary files. Attackers can write malicious SQLite databases to system director...

Medienbericht
  • EPSS 0.82%
  • Veröffentlicht 15.09.2026 15:17:56
  • Zuletzt bearbeitet 16.09.2026 20:17:00

Flowise before 3.1.4 contains a validation bypass vulnerability in MCP server configuration allowing authenticated attackers remote code execution through an unvalidated cwd parameter. Attackers can bypass path validation using clean filenames in the...

  • EPSS 0.33%
  • Veröffentlicht 15.09.2026 15:17:56
  • Zuletzt bearbeitet 17.09.2026 20:18:53

Flowise before 3.1.4 fails to enforce workspace-level authorization checks in openai-realtime endpoints, allowing authenticated users to access tools from ChatFlows in other workspaces by supplying an unscoped chatflowid. Attackers can invoke GET and...

Medienbericht
  • EPSS 0.63%
  • Veröffentlicht 15.09.2026 15:17:55
  • Zuletzt bearbeitet 23.09.2026 17:17:47

Flowise before 3.1.4 contains a remote code execution vulnerability in the Custom MCP node that allows authenticated attackers to execute arbitrary code by supplying npx package names in the mcpServerConfig parameter. Attackers can invoke npx with at...

  • EPSS 0.33%
  • Veröffentlicht 15.09.2026 15:17:54
  • Zuletzt bearbeitet 23.09.2026 17:17:47

Flowise versions before 3.1.4 contain cross-tenant authorization gaps in Enterprise endpoints that fail to verify resource ownership before operations. Attackers with Enterprise access can delete arbitrary workspaces, invite themselves into other org...

  • EPSS 0.37%
  • Veröffentlicht 15.09.2026 15:17:54
  • Zuletzt bearbeitet 23.09.2026 17:17:47

Flowise before 3.1.4 fails to scope enterprise organization and workspace membership APIs to the caller's tenant, allowing authenticated users to supply arbitrary organization IDs. Attackers can add themselves as organization owners, create workspace...

Exploit
  • EPSS 0.21%
  • Veröffentlicht 13.09.2026 19:15:09
  • Zuletzt bearbeitet 16.09.2026 15:18:31

A vulnerability was found in FlowiseAI Flowise up to 3.0.2. This vulnerability affects the function axios.post of the file packages/server/src/controllers/evaluations/index.ts of the component Evaluations Endpoint. The manipulation of the argument Ho...

Exploit
  • EPSS 0.25%
  • Veröffentlicht 12.09.2026 12:08:44
  • Zuletzt bearbeitet 15.09.2026 19:07:20

Flowise versions before 3.1.4 contain an unauthenticated denial of service vulnerability in the /api/v1/text-to-speech/abort endpoint that accepts user-supplied chatflowId and chatId without ownership verification. Attackers can terminate active chat...

Exploit
  • EPSS 0.22%
  • Veröffentlicht 12.09.2026 12:08:43
  • Zuletzt bearbeitet 15.09.2026 19:08:37

Flowise is a low-code platform for building LLM applications. In versions up to and including 3.1.3, the POST /api/v1/node-load-method/:name endpoint is mounted without any route-level permission check and invokes component loadMethods with an attack...

Exploit
  • EPSS 0.19%
  • Veröffentlicht 12.09.2026 12:08:42
  • Zuletzt bearbeitet 15.09.2026 18:23:42

Flowise before 3.1.4 contains a broken access control vulnerability in GET /api/v1/organizationuser that allows any authenticated organization member to retrieve the organization owner's full user record including bcrypt password hash and temporary t...