Vulnerabilities
CVE-2026-46475
FlowiseAI: Assistant create+update mass-assignment allows cross-workspace assistant takeover
CVE-2026-46444
FlowiseAI: Vector Store No Permission Checks
CVE-2026-46480
FlowiseAI: Evaluator create+update mass-assignment allows cross-workspace evaluator takeover
CVE-2026-42862
FlowiseAI has Mass Assignment in Tool Update Endpoint that Allows Cross-Workspace Resource Reassignment
CVE-2026-46479
FlowiseAI: Evaluation create+update mass-assignment allows cross-workspace evaluation takeover
CVE-2026-46442
FlowiseAI: Authenticated Host RCE via POST /api/v1/node-custom-function and NodeVM Sandbox Escape
CVE-2026-46441
FlowiseAI has Mass Assignment in Assistant Update Endpoint that Allows Cross-Workspace Resource Reassignment
CVE-2026-46440
FlowiseAI Exposes Basic Auth Credentials via API
CVE-2026-46476
FlowiseAI: CustomTemplate create+update mass-assignment allows cross-workspace template takeover
CVE-2026-46478
FlowiseAI: DatasetRow create+update mass-assignment allows cross-workspace row takeover
CVE-2026-42863
FlowiseAI has Mass Assignment in Chatflow Update Endpoint that Allows Cross-Workspace AgentFlow Reassignment
CVE-2026-46443
FlowiseAI Vulnerable to Credential Data Leak
CVE-2026-46477
FlowiseAI: Dataset create+update mass-assignment allows cross-workspace dataset takeover
CVE-2026-42861
FlowiseAI has Mass Assignment in Variable Update Endpoint that Allows Cross-Workspace Resource Reassignment
GHSA-c2c9-mfw7-p8hw
Flowise: Cross-Workspace Chatflow Disclosure via chatflows/apikey Endpoint Returns All Unprotected Chatflows
GHSA-59fh-9f3p-7m39
Flowise: Mass Assignment in PUT /api/v1/user Allows Authenticated Users to Override Password Hash and Bypass Password Change Verification
GHSA-m837-xvxr-vqwg
Flowise: Hardcoded CORS wildcard on TTS endpoint enables cross-origin credential abuse from any webpage
GHSA-m99r-2hxc-cp3q
Flowise has an MCP Security Bypass that Enables RCE
CVE-2026-43995
Flowise: SSRF Protection Bypass via Direct node-fetch / axios Usage (Patch Enforcement Failure)
CVE-2026-8026
Flowise: Bcrypt Password Hash Exposure
CVE-2026-41270
Flowise: SSRF Protection Bypass via Unprotected Built-in HTTP Modules in Custom Function Sandbox
CVE-2026-41275
Flowise: Password Reset Link Sent Over Unsecured HTTP
CVE-2026-41278
Flowise: Public chatflow endpoints return unsanitized flowData including plaintext API keys, passwords, and credential IDs
CVE-2026-41265
Flowise: Airtable_Agent Code Injection Remote Code Execution Vulnerability
CVE-2026-41269
Flowise: File Upload Validation Bypass in createAttachment
CVE-2026-41276
Flowise: resetPassword Authentication Bypass Vulnerability
CVE-2026-41138
Flowise: Remote code execution vulnerability in AirtableAgent.ts caused by lack of input verification when using `Pandas`.
CVE-2026-41268
Flowise: Parameter Override Bypass Remote Command Execution
CVE-2026-41137
Flowise: Code Injection in CSVAgent leads to Authenticated RCE
CVE-2026-41273
Flowise: Unauthenticated OAuth 2.0 Access Token Disclosure via Public Chatflow in Flowise
CVE-2026-41271
Flowise: APIChain Prompt Injection SSRF in GET/POST API Chains
CVE-2026-41279
Flowise: Unauthenticated TTS endpoint accepts arbitrary credential IDs — enables API credit abuse via stored credentials
CVE-2026-41266
Flowise: Sensitive Data Leak in public-chatbotConfig
CVE-2026-41267
Flowise: Improper Mass Assignment in Account Registration Enables Unauthorized Organization Association
CVE-2026-41277
Flowise: Mass Assignment in DocumentStore Create Endpoint Leads to Cross-Workspace Object Takeover (IDOR)
CVE-2026-41264
Flowise: CSV Agent Prompt Injection Remote Code Execution Vulnerability
CVE-2026-41272
Flowise: SSRF Protection Bypass (TOCTOU & Default Insecure)
CVE-2026-41274
Flowise: Cypher Injection in GraphCypherQAChain
GHSA-m7mq-85xj-9x33
Flowise: Weak Default Token Hash Secret
GHSA-9hrv-gvrv-6gf2
Flowise Execute Flow function has an SSRF vulnerability
GHSA-w6v6-49gh-mc9w
Flowise: Path Traversal in Vector Store basePath
GHSA-6pcv-j4jx-m4vx
Flowise: Unauthenticated Information Disclosure of OAuth Secrets (Cleartext) via GET Request
GHSA-2qqc-p94c-hxwh
Flowise: Weak Default Express Session Secret
CVE-2026-40933
Flowise: Authenticated RCE Via MCP Adapters
GHSA-cc4f-hjpj-g9p8
Flowise: Weak Default JWT Secrets
CVE-2026-31829
Flowise affected by Server-Side Request Forgery (SSRF) in HTTP Node Leading to Internal Network Access
CVE-2025-29192
Flowise Stored XSS vulnerability through logs in chatbot
CVE-2026-30824
Flowise Missing Authentication on NVIDIA NIM Endpoints
CVE-2026-30822
Flowise Allows Mass Assignment in `/api/v1/leads` Endpoint
CVE-2026-30823
Flowise has IDOR leading to Account Takeover and Enterprise Feature Bypass via SSO Configuration
CVE-2026-30820
Flowise has Authorization Bypass via Spoofed x-request-from Header
CVE-2026-30821
Flowise has Arbitrary File Upload via MIME Spoofing
GHSA-jc5m-wrp2-qq38
Flowise Vulnerable to PII Disclosure on Unauthenticated Forgot Password Endpoint
GHSA-x2g5-fvc2-gqvp
Flowise has Insufficient Password Salt Rounds
CVE-2025-61913
Flowise is vulnerable to arbitrary file write through its WriteFileTool
GHSA-j44m-5v8f-gc9c
Flowise is vulnerable to arbitrary file exposure through its ReadFileTool
CVE-2025-50538
Flowise is vulnerable to stored XSS via "View Messages" allows credential theft in FlowiseAI admin panel
CVE-2025-61687
FlowiseAI/Flosise has File Upload vulnerability
GHSA-v5w9-prxf-w882
Flowise has Authentication Bypass Using Unprotected Registration Endpoint (/register)
GHSA-x7rp-qj2h-ghgw
Flowise Fails to Invalidate Existing Sessions After Password Changes
CVE-2025-34267
Flowise: Authenticated Command Execution and Sandbox Bypass via Puppeteer and Playwright Packages
CVE-2025-57164
FlowiseAI Pre-Auth Arbitrary Code Execution
GHSA-3g4j-r53p-22wx
Duplicate Advisory: FlowiseAI Pre-Auth Arbitrary Code Execution
CVE-2025-59528
Flowise has Remote Code Execution vulnerability
GHSA-4fr9-3x69-36wv
Flowise vulnerable to XSS
GHSA-7rgr-72hp-9wp3
Duplicate Advisory: Flowise is vulnerable to stored XSS via "View Messages" allows credential theft in FlowiseAI admin panel
GHSA-wq95-wr7m-26h4
Duplicate Advisory: Flowise Stored XSS vulnerability through logs in chatbot
CVE-2025-55346
Flowise vulnerable to RCE via Dynamic function constructor injection
GHSA-q4xx-mc3q-23x8
Duplicate Advisory: Flowise vulnerable to RCE via Dynamic function constructor injection
CVE-2025-59527
FlowiseAI/Flowise has Server-Side Request Forgery (SSRF) vulnerability
GHSA-6933-jpx5-q87q
Flowise has unsandboxed remote code execution via Custom MCP
GHSA-q67q-549q-p849
Flowise has arbitrary file access due to missing chat flow id validation
GHSA-99pg-hqvx-r4gf
Flowise has an Arbitrary File Read
CVE-2025-58434
Flowise Cloud and Local Deployments have Unauthenticated Password Reset Token Disclosure that Leads to Account Takeover
CVE-2025-8943
Flowise OS command remote code execution
GHSA-9c4c-g95m-c8cp
FlowiseDB vulnerable to SQL Injection by authenticated users
GHSA-8vvx-qvq9-5948
Flowise allows arbitrary file write to RCE
GHSA-h42x-xx2q-6v6g
Flowise Pre-auth Arbitrary File Upload
CVE-2025-26319
FlowiseAI Flowise arbitrary file upload vulnerability
GHSA-5cph-wvm9-45gj
Flowise OverrideConfig security vulnerability
CVE-2024-9148
Flowise and Flowise Chat Embed vulnerable to Stored Cross-site Scripting
CVE-2024-8181
Flowise Authentication Bypass vulnerability
CVE-2024-8182
Flowise Unauthenticated Denial of Service (DoS) vulnerability
CVE-2024-36421
Flowise Cors Misconfiguration in packages/server/src/index.ts
CVE-2024-37146
Flowise Cross-site Scripting in/api/v1/credentials/id
CVE-2024-37145
Flowise Cross-site Scripting in /api/v1/chatflows-streaming/id
CVE-2024-36423
Flowise Cross-site Scripting in /api/v1/public-chatflows/id
CVE-2024-36422
Flowise Cross-site Scripting in api/v1/chatflows/id
CVE-2024-36420
Flowise Path Injection at /api/v1/openai-assistants-file
CVE-2024-31621
Flowise vulnerable to code injection via api/v1
Ready to move
Start Securing
Free, no credit card | First findings in minutes