100 Total advisories
100 Vulnerabilities
0 Malware

Vulnerabilities

UNKNOWN
npm

CVE-2026-70478

Flowise: Unauthenticated OAuth2 token refresh endpoint returns access tokens — enables token theft for any connected service

UNKNOWN
npm

CVE-2026-70477

Flowise: CSV Agent Prompt Injection Remote Code Execution Vulnerability

UNKNOWN
npm

GHSA-8gj2-2cvc-6xx7

Flowise: Unauthenticated Credential Abuse via Text-to-Speech Endpoint Allows Unauthorized Use of Private Chatflow TTS Credentials

UNKNOWN
npm

CVE-2026-70475

Flowise: Missing Authorization on Execution Update Endpoint

UNKNOWN
npm

CVE-2026-70476

Flowise: Broken Access Control in Stripe Subscription Endpoints Allows Cross-Tenant Billing Manipulation

UNKNOWN
npm

CVE-2026-70474

Flowise: Cross-Workspace OAuth2 Credential Metadata Leak

UNKNOWN
npm

CVE-2026-69256

Flowise: Remote Code Execution Vulnerability in CSVAgent

UNKNOWN
npm

CVE-2026-70471

Flowise: RBAC Bypass Leading to Unauthorized Workspace Variables Disclosure

UNKNOWN
npm

GHSA-88pr-878c-24wf

Flowise: Authenticated arbitrary file write in the `S3 Directory` document loader via unsanitized S3 object keys

MEDIUM 6.5
npm

GHSA-rwrp-9823-p2xq

Flowise: Incomplete Credential Redaction Exposes Secrets via API

UNKNOWN
npm

CVE-2026-70472

Flowise: Cross-workspace credential IDOR in openai-assistants-vector-store

UNKNOWN
npm

CVE-2026-70473

Flowise: Information Disclosure in GET /api/v1/upsert-history returns the entire server-wide upsert history

UNKNOWN
npm

CVE-2026-69264

Flowise: RCE via CSVAgent csvFile data URI base64 segment is interpolated into Python source without validation

UNKNOWN
npm

CVE-2026-70470

Flowise: Pyodide validator Unicode homoglyph bypass leads to RCE

UNKNOWN
npm

CVE-2026-69263

Flowise: CVE-2025-8943 Patch Bypass: npm_config_yes bypasses MCP environment variable blocklist (Unauthenticated RCE)

UNKNOWN
npm

CVE-2026-69262

Flowise: `DELETE /api/v1/chatflows/:id` does not validate resource type, allowing `agentflows:delete` and `chatflows:delete` to delete each other’s flow type

UNKNOWN
npm

CVE-2026-69259

Flowise RCE via SQLite Record Manager Node

UNKNOWN
npm

CVE-2026-69257

Flowise: SSRF Protection Bypass via IPv4-Mapped IPv6 Addresses

UNKNOWN
npm

CVE-2026-69258

Flowise: Unauthenticated Property Injection into Flow Execution Context via Ungated `overrideConfig` Spread in Prediction API

UNKNOWN
npm

CVE-2026-69254

Flowise: RCE via NodeVM Sandbox Escape in executeJavaScriptCode() nodeVMOptions Override

UNKNOWN
npm

CVE-2026-69255

Flowise: CSV Agent Remote Code Execution via Pyodide Code Injection — Root Shell Verified

UNKNOWN
npm

CVE-2026-69253

Flowise Sandbox Escape to RCE

UNKNOWN
npm

CVE-2026-69252

Flowise: Missing authorization on `/api/v1/files` allows low-privileged API keys to list and delete files across workspaces within the same organization

UNKNOWN
npm

CVE-2026-69251

Flowise RCE via TypeORM DataSource

UNKNOWN
npm

CVE-2026-69250

Flowise: Unauthenticated OAuth2 Refresh Enables Non-Blind SSRF and Secret Exfiltration

UNKNOWN
npm

GHSA-2364-jh4q-m9vm

Flowise: IDOR vulnerability exists at the GET /api/v1/organization/customer-default-source endpoint

CRITICAL 9.1
npm

CVE-2025-71324

Flowise has an Arbitrary File Read

MEDIUM 5.6
npm

CVE-2026-56269

Flowise: Weak Default Token Hash Secret

MEDIUM 4.1
npm

CVE-2026-56272

Flowise has Insufficient Password Salt Rounds

HIGH 7.7
npm

CVE-2026-56268

Flowise: Cross-Workspace Chatflow Disclosure via chatflows/apikey Endpoint Returns All Unprotected Chatflows

MEDIUM 5.6
npm

CVE-2026-56271

Flowise: Weak Default JWT Secrets

UNKNOWN
npm

CVE-2026-56273

Flowise: Path Traversal in Vector Store basePath

UNKNOWN
npm

CVE-2026-56267

Flowise Vulnerable to PII Disclosure on Unauthenticated Forgot Password Endpoint

UNKNOWN
npm

CVE-2026-56277

Flowise: Hardcoded CORS wildcard on TTS endpoint enables cross-origin credential abuse from any webpage

MEDIUM 5.6
npm

CVE-2026-56278

Flowise: Weak Default Express Session Secret

UNKNOWN
npm

CVE-2026-56274

Flowise has an MCP Security Bypass that Enables RCE

UNKNOWN
npm

CVE-2026-56276

Flowise: Mass Assignment in PUT /api/v1/user Allows Authenticated Users to Override Password Hash and Bypass Password Change Verification

UNKNOWN
npm

CVE-2026-56275

Flowise Execute Flow function has an SSRF vulnerability

CRITICAL 9.3
npm

CVE-2025-50538

Flowise is vulnerable to stored XSS via "View Messages" allows credential theft in FlowiseAI admin panel

UNKNOWN
npm

CVE-2025-71331

Flowise vulnerable to XSS

UNKNOWN
npm

CVE-2025-71333

Flowise Pre-auth Arbitrary File Upload

UNKNOWN
npm

CVE-2025-71336

Flowise has unsandboxed remote code execution via Custom MCP

CRITICAL 10.0
npm

CVE-2025-71338

Flowise allows arbitrary file write to RCE

MEDIUM 5.3
npm

CVE-2025-29192

Flowise Stored XSS vulnerability through logs in chatbot

CRITICAL 9.8
npm

CVE-2025-71334

Flowise has arbitrary file access due to missing chat flow id validation

UNKNOWN
npm

CVE-2024-58351

Flowise OverrideConfig security vulnerability

HIGH 8.1
npm

CVE-2025-71335

Flowise Fails to Invalidate Existing Sessions After Password Changes

UNKNOWN
npm

CVE-2025-71327

Flowise has Authentication Bypass Using Unprotected Registration Endpoint (/register)

HIGH 8.8
npm

CVE-2026-46478

FlowiseAI: DatasetRow create+update mass-assignment allows cross-workspace row takeover

HIGH 8.8
npm

CVE-2026-46477

FlowiseAI: Dataset create+update mass-assignment allows cross-workspace dataset takeover

HIGH 8.8
npm

CVE-2026-46479

FlowiseAI: Evaluation create+update mass-assignment allows cross-workspace evaluation takeover

MEDIUM 5.9
npm

CVE-2025-71332

FlowiseDB vulnerable to SQL Injection by authenticated users

MEDIUM 5.3
npm

CVE-2026-56270

Flowise: Unauthenticated Information Disclosure of OAuth Secrets (Cleartext) via GET Request

HIGH 8.8
npm

CVE-2026-46475

FlowiseAI: Assistant create+update mass-assignment allows cross-workspace assistant takeover

HIGH 8.8
npm

CVE-2026-46444

FlowiseAI: Vector Store No Permission Checks

HIGH 8.8
npm

CVE-2026-46480

FlowiseAI: Evaluator create+update mass-assignment allows cross-workspace evaluator takeover

UNKNOWN
npm

CVE-2026-42862

FlowiseAI has Mass Assignment in Tool Update Endpoint that Allows Cross-Workspace Resource Reassignment

UNKNOWN
npm

CVE-2026-46442

FlowiseAI: Authenticated Host RCE via POST /api/v1/node-custom-function and NodeVM Sandbox Escape

UNKNOWN
npm

CVE-2026-46441

FlowiseAI has Mass Assignment in Assistant Update Endpoint that Allows Cross-Workspace Resource Reassignment

HIGH 7.5
npm

CVE-2026-46440

FlowiseAI Exposes Basic Auth Credentials via API

UNKNOWN
npm

CVE-2026-46476

FlowiseAI: CustomTemplate create+update mass-assignment allows cross-workspace template takeover

UNKNOWN
npm

CVE-2026-42863

FlowiseAI has Mass Assignment in Chatflow Update Endpoint that Allows Cross-Workspace AgentFlow Reassignment

UNKNOWN
npm

CVE-2026-46443

FlowiseAI Vulnerable to Credential Data Leak

UNKNOWN
npm

CVE-2026-42861

FlowiseAI has Mass Assignment in Variable Update Endpoint that Allows Cross-Workspace Resource Reassignment

UNKNOWN
npm

CVE-2026-43995

Flowise: SSRF Protection Bypass via Direct node-fetch / axios Usage (Patch Enforcement Failure)

LOW 3.7
npm

CVE-2026-8026

Flowise: Bcrypt Password Hash Exposure

HIGH 7.1
npm

CVE-2026-41270

Flowise: SSRF Protection Bypass via Unprotected Built-in HTTP Modules in Custom Function Sandbox

HIGH 7.5
npm

CVE-2026-41275

Flowise: Password Reset Link Sent Over Unsecured HTTP

HIGH 7.5
npm

CVE-2026-41278

Flowise: Public chatflow endpoints return unsanitized flowData including plaintext API keys, passwords, and credential IDs

CRITICAL 9.8
npm

CVE-2026-41265

Flowise: Airtable_Agent Code Injection Remote Code Execution Vulnerability

HIGH 7.1
npm

CVE-2026-41269

Flowise: File Upload Validation Bypass in createAttachment

CRITICAL 9.8
npm

CVE-2026-41276

Flowise: resetPassword Authentication Bypass Vulnerability

HIGH 8.3
npm

CVE-2026-41138

Flowise: Remote code execution vulnerability in AirtableAgent.ts caused by lack of input verification when using `Pandas`.

HIGH 7.7
npm

CVE-2026-41268

Flowise: Parameter Override Bypass Remote Command Execution

HIGH 8.8
npm

CVE-2026-41137

Flowise: Code Injection in CSVAgent leads to Authenticated RCE

HIGH 8.2
npm

CVE-2026-41273

Flowise: Unauthenticated OAuth 2.0 Access Token Disclosure via Public Chatflow in Flowise

HIGH 7.1
npm

CVE-2026-41271

Flowise: APIChain Prompt Injection SSRF in GET/POST API Chains

HIGH 7.5
npm

CVE-2026-41279

Flowise: Unauthenticated TTS endpoint accepts arbitrary credential IDs — enables API credit abuse via stored credentials

HIGH 7.5
npm

CVE-2026-41266

Flowise: Sensitive Data Leak in public-chatbotConfig

HIGH 8.1
npm

CVE-2026-41267

Flowise: Improper Mass Assignment in Account Registration Enables Unauthorized Organization Association

HIGH 8.8
npm

CVE-2026-41277

Flowise: Mass Assignment in DocumentStore Create Endpoint Leads to Cross-Workspace Object Takeover (IDOR)

CRITICAL 9.8
npm

CVE-2026-41264

Flowise: CSV Agent Prompt Injection Remote Code Execution Vulnerability

HIGH 7.1
npm

CVE-2026-41272

Flowise: SSRF Protection Bypass (TOCTOU & Default Insecure)

UNKNOWN
npm

CVE-2026-41274

Flowise: Cypher Injection in GraphCypherQAChain

CRITICAL 9.9
npm

CVE-2026-40933

Flowise: Authenticated RCE Via MCP Adapters

HIGH 7.1
npm

CVE-2026-31829

Flowise affected by Server-Side Request Forgery (SSRF) in HTTP Node Leading to Internal Network Access

UNKNOWN
npm

CVE-2026-30824

Flowise Missing Authentication on NVIDIA NIM Endpoints

HIGH 7.7
npm

CVE-2026-30822

Flowise Allows Mass Assignment in `/api/v1/leads` Endpoint

HIGH 8.8
npm

CVE-2026-30823

Flowise has IDOR leading to Account Takeover and Enterprise Feature Bypass via SSO Configuration

UNKNOWN
npm

CVE-2026-30820

Flowise has Authorization Bypass via Spoofed x-request-from Header

UNKNOWN
npm

CVE-2026-30821

Flowise has Arbitrary File Upload via MIME Spoofing

CRITICAL 9.9
npm

CVE-2025-61913

Flowise is vulnerable to arbitrary file write through its WriteFileTool

HIGH 7.7
npm

GHSA-j44m-5v8f-gc9c

Flowise is vulnerable to arbitrary file exposure through its ReadFileTool

HIGH 8.3
npm

CVE-2025-61687

FlowiseAI/Flosise has File Upload vulnerability

UNKNOWN
npm

CVE-2025-34267

Flowise: Authenticated Command Execution and Sandbox Bypass via Puppeteer and Playwright Packages

CRITICAL 9.1
npm

CVE-2025-57164

FlowiseAI Pre-Auth Arbitrary Code Execution

CRITICAL 9.1
npm

GHSA-3g4j-r53p-22wx

Duplicate Advisory: FlowiseAI Pre-Auth Arbitrary Code Execution

CRITICAL 10.0
npm

CVE-2025-59528

Flowise has Remote Code Execution vulnerability

HIGH 8.2
npm

GHSA-7rgr-72hp-9wp3

Duplicate Advisory: Flowise is vulnerable to stored XSS via "View Messages" allows credential theft in FlowiseAI admin panel

HIGH 8.2
npm

GHSA-wq95-wr7m-26h4

Duplicate Advisory: Flowise Stored XSS vulnerability through logs in chatbot

Ready to move

Start Securing

Free, no credit card | First findings in minutes