100 Total advisories
100 Vulnerabilities
0 Malware

Dependency scanning

Check whether flowise is in your codebase

Corgea flags malicious and compromised dependencies with reachability analysis, so you fix the packages that actually run in your application instead of working through the whole lockfile.

Vulnerabilities

UNKNOWN
npm

CVE-2024-58351

Flowise OverrideConfig security vulnerability

CRITICAL 9.8
npm

GHSA-5w6g-rc45-wvv9

Duplicate Advisory: Flowise OverrideConfig security vulnerability

UNKNOWN
npm

CVE-2026-69257

Flowise: SSRF Protection Bypass via IPv4-Mapped IPv6 Addresses

UNKNOWN
npm

CVE-2026-73488

Flowise: IDOR vulnerability exists at the GET /api/v1/organization/customer-default-source endpoint

UNKNOWN
npm

CVE-2026-73603

Flowise: Unauthenticated Credential Abuse via Text-to-Speech Endpoint Allows Unauthorized Use of Private Chatflow TTS Credentials

MEDIUM 6.5
npm

CVE-2026-73604

Flowise: Incomplete Credential Redaction Exposes Secrets via API

UNKNOWN
npm

CVE-2026-70478

Flowise: Unauthenticated OAuth2 token refresh endpoint returns access tokens — enables token theft for any connected service

UNKNOWN
npm

CVE-2026-70477

Flowise: CSV Agent Prompt Injection Remote Code Execution Vulnerability

UNKNOWN
npm

CVE-2026-70475

Flowise: Missing Authorization on Execution Update Endpoint

UNKNOWN
npm

CVE-2026-70476

Flowise: Broken Access Control in Stripe Subscription Endpoints Allows Cross-Tenant Billing Manipulation

UNKNOWN
npm

CVE-2026-70474

Flowise: Cross-Workspace OAuth2 Credential Metadata Leak

UNKNOWN
npm

CVE-2026-69256

Flowise: Remote Code Execution Vulnerability in CSVAgent

UNKNOWN
npm

CVE-2026-70471

Flowise: RBAC Bypass Leading to Unauthorized Workspace Variables Disclosure

UNKNOWN
npm

GHSA-88pr-878c-24wf

Flowise: Authenticated arbitrary file write in the `S3 Directory` document loader via unsanitized S3 object keys

UNKNOWN
npm

CVE-2026-70472

Flowise: Cross-workspace credential IDOR in openai-assistants-vector-store

UNKNOWN
npm

CVE-2026-70473

Flowise: Information Disclosure in GET /api/v1/upsert-history returns the entire server-wide upsert history

UNKNOWN
npm

CVE-2026-69264

Flowise: RCE via CSVAgent csvFile data URI base64 segment is interpolated into Python source without validation

UNKNOWN
npm

CVE-2026-70470

Flowise: Pyodide validator Unicode homoglyph bypass leads to RCE

UNKNOWN
npm

CVE-2026-69263

Flowise: CVE-2025-8943 Patch Bypass: npm_config_yes bypasses MCP environment variable blocklist (Unauthenticated RCE)

UNKNOWN
npm

CVE-2026-69262

Flowise: `DELETE /api/v1/chatflows/:id` does not validate resource type, allowing `agentflows:delete` and `chatflows:delete` to delete each other’s flow type

UNKNOWN
npm

CVE-2026-69259

Flowise RCE via SQLite Record Manager Node

UNKNOWN
npm

CVE-2026-69258

Flowise: Unauthenticated Property Injection into Flow Execution Context via Ungated `overrideConfig` Spread in Prediction API

UNKNOWN
npm

CVE-2026-69254

Flowise: RCE via NodeVM Sandbox Escape in executeJavaScriptCode() nodeVMOptions Override

UNKNOWN
npm

CVE-2026-69255

Flowise: CSV Agent Remote Code Execution via Pyodide Code Injection — Root Shell Verified

UNKNOWN
npm

CVE-2026-69253

Flowise Sandbox Escape to RCE

UNKNOWN
npm

CVE-2026-69252

Flowise: Missing authorization on `/api/v1/files` allows low-privileged API keys to list and delete files across workspaces within the same organization

UNKNOWN
npm

CVE-2026-69251

Flowise RCE via TypeORM DataSource

UNKNOWN
npm

CVE-2026-69250

Flowise: Unauthenticated OAuth2 Refresh Enables Non-Blind SSRF and Secret Exfiltration

CRITICAL 9.1
npm

CVE-2025-71324

Flowise has an Arbitrary File Read

MEDIUM 5.6
npm

CVE-2026-56269

Flowise: Weak Default Token Hash Secret

MEDIUM 4.1
npm

CVE-2026-56272

Flowise has Insufficient Password Salt Rounds

HIGH 7.7
npm

CVE-2026-56268

Flowise: Cross-Workspace Chatflow Disclosure via chatflows/apikey Endpoint Returns All Unprotected Chatflows

MEDIUM 5.6
npm

CVE-2026-56271

Flowise: Weak Default JWT Secrets

UNKNOWN
npm

CVE-2026-56273

Flowise: Path Traversal in Vector Store basePath

UNKNOWN
npm

CVE-2026-56267

Flowise Vulnerable to PII Disclosure on Unauthenticated Forgot Password Endpoint

UNKNOWN
npm

CVE-2026-56277

Flowise: Hardcoded CORS wildcard on TTS endpoint enables cross-origin credential abuse from any webpage

MEDIUM 5.6
npm

CVE-2026-56278

Flowise: Weak Default Express Session Secret

UNKNOWN
npm

CVE-2026-56274

Flowise has an MCP Security Bypass that Enables RCE

UNKNOWN
npm

CVE-2026-56276

Flowise: Mass Assignment in PUT /api/v1/user Allows Authenticated Users to Override Password Hash and Bypass Password Change Verification

UNKNOWN
npm

CVE-2026-56275

Flowise Execute Flow function has an SSRF vulnerability

CRITICAL 9.3
npm

CVE-2025-50538

Flowise is vulnerable to stored XSS via "View Messages" allows credential theft in FlowiseAI admin panel

UNKNOWN
npm

CVE-2025-71331

Flowise vulnerable to XSS

UNKNOWN
npm

CVE-2025-71333

Flowise Pre-auth Arbitrary File Upload

UNKNOWN
npm

CVE-2025-71336

Flowise has unsandboxed remote code execution via Custom MCP

CRITICAL 10.0
npm

CVE-2025-71338

Flowise allows arbitrary file write to RCE

MEDIUM 5.3
npm

CVE-2025-29192

Flowise Stored XSS vulnerability through logs in chatbot

CRITICAL 9.8
npm

CVE-2025-71334

Flowise has arbitrary file access due to missing chat flow id validation

HIGH 8.1
npm

CVE-2025-71335

Flowise Fails to Invalidate Existing Sessions After Password Changes

UNKNOWN
npm

CVE-2025-71327

Flowise has Authentication Bypass Using Unprotected Registration Endpoint (/register)

HIGH 8.8
npm

CVE-2026-46478

FlowiseAI: DatasetRow create+update mass-assignment allows cross-workspace row takeover

HIGH 8.8
npm

CVE-2026-46477

FlowiseAI: Dataset create+update mass-assignment allows cross-workspace dataset takeover

HIGH 8.8
npm

CVE-2026-46479

FlowiseAI: Evaluation create+update mass-assignment allows cross-workspace evaluation takeover

MEDIUM 5.9
npm

CVE-2025-71332

FlowiseDB vulnerable to SQL Injection by authenticated users

MEDIUM 5.3
npm

CVE-2026-56270

Flowise: Unauthenticated Information Disclosure of OAuth Secrets (Cleartext) via GET Request

HIGH 8.8
npm

CVE-2026-46475

FlowiseAI: Assistant create+update mass-assignment allows cross-workspace assistant takeover

HIGH 8.8
npm

CVE-2026-46444

FlowiseAI: Vector Store No Permission Checks

HIGH 8.8
npm

CVE-2026-46480

FlowiseAI: Evaluator create+update mass-assignment allows cross-workspace evaluator takeover

UNKNOWN
npm

CVE-2026-42862

FlowiseAI has Mass Assignment in Tool Update Endpoint that Allows Cross-Workspace Resource Reassignment

UNKNOWN
npm

CVE-2026-46442

FlowiseAI: Authenticated Host RCE via POST /api/v1/node-custom-function and NodeVM Sandbox Escape

UNKNOWN
npm

CVE-2026-46441

FlowiseAI has Mass Assignment in Assistant Update Endpoint that Allows Cross-Workspace Resource Reassignment

HIGH 7.5
npm

CVE-2026-46440

FlowiseAI Exposes Basic Auth Credentials via API

UNKNOWN
npm

CVE-2026-46476

FlowiseAI: CustomTemplate create+update mass-assignment allows cross-workspace template takeover

UNKNOWN
npm

CVE-2026-42863

FlowiseAI has Mass Assignment in Chatflow Update Endpoint that Allows Cross-Workspace AgentFlow Reassignment

UNKNOWN
npm

CVE-2026-46443

FlowiseAI Vulnerable to Credential Data Leak

UNKNOWN
npm

CVE-2026-42861

FlowiseAI has Mass Assignment in Variable Update Endpoint that Allows Cross-Workspace Resource Reassignment

UNKNOWN
npm

CVE-2026-43995

Flowise: SSRF Protection Bypass via Direct node-fetch / axios Usage (Patch Enforcement Failure)

LOW 3.7
npm

CVE-2026-8026

Flowise: Bcrypt Password Hash Exposure

HIGH 7.1
npm

CVE-2026-41270

Flowise: SSRF Protection Bypass via Unprotected Built-in HTTP Modules in Custom Function Sandbox

HIGH 7.5
npm

CVE-2026-41275

Flowise: Password Reset Link Sent Over Unsecured HTTP

HIGH 7.5
npm

CVE-2026-41278

Flowise: Public chatflow endpoints return unsanitized flowData including plaintext API keys, passwords, and credential IDs

CRITICAL 9.8
npm

CVE-2026-41265

Flowise: Airtable_Agent Code Injection Remote Code Execution Vulnerability

HIGH 7.1
npm

CVE-2026-41269

Flowise: File Upload Validation Bypass in createAttachment

CRITICAL 9.8
npm

CVE-2026-41276

Flowise: resetPassword Authentication Bypass Vulnerability

HIGH 8.3
npm

CVE-2026-41138

Flowise: Remote code execution vulnerability in AirtableAgent.ts caused by lack of input verification when using `Pandas`.

HIGH 7.7
npm

CVE-2026-41268

Flowise: Parameter Override Bypass Remote Command Execution

HIGH 8.8
npm

CVE-2026-41137

Flowise: Code Injection in CSVAgent leads to Authenticated RCE

HIGH 8.2
npm

CVE-2026-41273

Flowise: Unauthenticated OAuth 2.0 Access Token Disclosure via Public Chatflow in Flowise

HIGH 7.1
npm

CVE-2026-41271

Flowise: APIChain Prompt Injection SSRF in GET/POST API Chains

HIGH 7.5
npm

CVE-2026-41279

Flowise: Unauthenticated TTS endpoint accepts arbitrary credential IDs — enables API credit abuse via stored credentials

HIGH 7.5
npm

CVE-2026-41266

Flowise: Sensitive Data Leak in public-chatbotConfig

HIGH 8.1
npm

CVE-2026-41267

Flowise: Improper Mass Assignment in Account Registration Enables Unauthorized Organization Association

HIGH 8.8
npm

CVE-2026-41277

Flowise: Mass Assignment in DocumentStore Create Endpoint Leads to Cross-Workspace Object Takeover (IDOR)

CRITICAL 9.8
npm

CVE-2026-41264

Flowise: CSV Agent Prompt Injection Remote Code Execution Vulnerability

HIGH 7.1
npm

CVE-2026-41272

Flowise: SSRF Protection Bypass (TOCTOU & Default Insecure)

UNKNOWN
npm

CVE-2026-41274

Flowise: Cypher Injection in GraphCypherQAChain

CRITICAL 9.9
npm

CVE-2026-40933

Flowise: Authenticated RCE Via MCP Adapters

HIGH 7.1
npm

CVE-2026-31829

Flowise affected by Server-Side Request Forgery (SSRF) in HTTP Node Leading to Internal Network Access

UNKNOWN
npm

CVE-2026-30824

Flowise Missing Authentication on NVIDIA NIM Endpoints

HIGH 7.7
npm

CVE-2026-30822

Flowise Allows Mass Assignment in `/api/v1/leads` Endpoint

HIGH 8.8
npm

CVE-2026-30823

Flowise has IDOR leading to Account Takeover and Enterprise Feature Bypass via SSO Configuration

UNKNOWN
npm

CVE-2026-30820

Flowise has Authorization Bypass via Spoofed x-request-from Header

UNKNOWN
npm

CVE-2026-30821

Flowise has Arbitrary File Upload via MIME Spoofing

CRITICAL 9.9
npm

CVE-2025-61913

Flowise is vulnerable to arbitrary file write through its WriteFileTool

HIGH 7.7
npm

GHSA-j44m-5v8f-gc9c

Flowise is vulnerable to arbitrary file exposure through its ReadFileTool

HIGH 8.3
npm

CVE-2025-61687

FlowiseAI/Flosise has File Upload vulnerability

UNKNOWN
npm

CVE-2025-34267

Flowise: Authenticated Command Execution and Sandbox Bypass via Puppeteer and Playwright Packages

CRITICAL 9.1
npm

CVE-2025-57164

FlowiseAI Pre-Auth Arbitrary Code Execution

CRITICAL 9.1
npm

GHSA-3g4j-r53p-22wx

Duplicate Advisory: FlowiseAI Pre-Auth Arbitrary Code Execution

CRITICAL 10.0
npm

CVE-2025-59528

Flowise has Remote Code Execution vulnerability

HIGH 8.2
npm

GHSA-7rgr-72hp-9wp3

Duplicate Advisory: Flowise is vulnerable to stored XSS via "View Messages" allows credential theft in FlowiseAI admin panel

Learn What is SAST?

Static Application Security Testing finds vulnerabilities like this one in source code before it ships. Read the guide →

Ready to move

Start Securing

Free, no credit card | First findings in minutes