Flowise
FlowiseAI · 128 CVEs
Flowise through 3.1.4 Missing Authorization via upsert-history
Sep 26, 2026
Flowise through 3.1.4 Insecure Direct Object Reference via Credential
Sep 26, 2026
Flowise through 3.1.4 Authorization Bypass via BullMQ Dashboard
Sep 26, 2026
Flowise through 3.1.4 Authentication Bypass via Email-Only SSO
Sep 26, 2026
Flowise through 3.1.4 Authentication Bypass via SSO Email Match
Sep 26, 2026
Flowise through 3.1.4 Missing Authorization via Chat Message Routes
Sep 26, 2026
Flowise before 3.1.4 Server-Side Request Forgery via document loaders
Sep 15, 2026
Flowise before 3.1.4 NoSQL Injection via sessionId
Sep 15, 2026
Flowise before 3.1.4 Script Injection via Docker Workflows
Sep 15, 2026
Flowise before 3.1.4 SSRF and API Key Exfiltration via Chat Model Nodes
Sep 15, 2026
Flowise before 3.1.4 Remote Code Execution via SQL Database Chain
Sep 15, 2026
Flowise before 3.1.4 Authorization Bypass via openai-realtime
Sep 15, 2026
Flowise before 3.1.4 Remote Code Execution via cwd Parameter
Sep 15, 2026
Flowise before 3.1.4 Remote Code Execution via Custom MCP npx
Sep 15, 2026
Flowise before 3.1.4 Cross-Tenant Organization Admin Takeover
Sep 15, 2026
Flowise before 3.1.4 Cross-Tenant Authorization Bypass
Sep 15, 2026
FlowiseAI Flowise Evaluations Endpoint index.ts axios.post server-side request forgery
Sep 13, 2026
Flowise before 3.1.4 Denial of Service via text-to-speech/abort
Sep 12, 2026
Flowise before 3.1.4 Cross-Workspace Credential IDOR via node-load-method
Sep 12, 2026
Flowise before 3.1.4 Broken Access Control via organizationuser
Sep 12, 2026
An issue in Flowise 3.1.2 allows a remote attacker to execute arbitrary code via the /api/v1/prediction/<flowId> endpoi…
Sep 10, 2026
Flowise before 3.1.3 Credential Exposure via API
Aug 13, 2026
Flowise before 3.1.4 Credential Abuse via Text-to-Speech
Aug 13, 2026
Flowise before 3.1.3 Sandbox Escape to RCE
Aug 13, 2026
Flowise before 3.1.3 Remote Code Execution via Custom MCP
Aug 13, 2026
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2026-100610 | Flowise through 3.1.4 Missing Authorization via upsert-history | HIGH | 0.27% | Sep 26, 2026 |
| CVE-2026-100609 | Flowise through 3.1.4 Insecure Direct Object Reference via Credential | HIGH | 0.23% | Sep 26, 2026 |
| CVE-2026-100608 | Flowise through 3.1.4 Authorization Bypass via BullMQ Dashboard | HIGH | 0.27% | Sep 26, 2026 |
| CVE-2026-100607 | Flowise through 3.1.4 Authentication Bypass via Email-Only SSO | CRITICAL | 0.29% | Sep 26, 2026 |
| CVE-2026-100606 | Flowise through 3.1.4 Authentication Bypass via SSO Email Match | CRITICAL | 0.37% | Sep 26, 2026 |
| CVE-2026-100605 | Flowise through 3.1.4 Missing Authorization via Chat Message Routes | HIGH | 0.22% | Sep 26, 2026 |
| CVE-2026-91938 | Flowise before 3.1.4 Server-Side Request Forgery via document loaders | HIGH | 0.37% | Sep 15, 2026 |
| CVE-2026-91937 | Flowise before 3.1.4 NoSQL Injection via sessionId | HIGH | 0.47% | Sep 15, 2026 |
| CVE-2026-91936 | Flowise before 3.1.4 Script Injection via Docker Workflows | HIGH | 0.46% | Sep 15, 2026 |
| CVE-2026-91935 | Flowise before 3.1.4 SSRF and API Key Exfiltration via Chat Model Nodes | HIGH | 0.39% | Sep 15, 2026 |
| CVE-2026-91934 | Flowise before 3.1.4 Remote Code Execution via SQL Database Chain | HIGH | 0.74% | Sep 15, 2026 |
| CVE-2026-91933 | Flowise before 3.1.4 Authorization Bypass via openai-realtime | HIGH | 0.35% | Sep 15, 2026 |
| CVE-2026-91932 | Flowise before 3.1.4 Remote Code Execution via cwd Parameter | CRITICAL | 0.73% | Sep 15, 2026 |
| CVE-2026-91931 | Flowise before 3.1.4 Remote Code Execution via Custom MCP npx | CRITICAL | 0.68% | Sep 15, 2026 |
| CVE-2026-91930 | Flowise before 3.1.4 Cross-Tenant Organization Admin Takeover | HIGH | 0.40% | Sep 15, 2026 |
| CVE-2026-91929 | Flowise before 3.1.4 Cross-Tenant Authorization Bypass | HIGH | 0.35% | Sep 15, 2026 |
| CVE-2026-90580 | FlowiseAI Flowise Evaluations Endpoint index.ts axios.post server-side request forgery | MEDIUM | 0.41% | Sep 13, 2026 |
| CVE-2026-90535 | Flowise before 3.1.4 Denial of Service via text-to-speech/abort | MEDIUM | 0.48% | Sep 12, 2026 |
| CVE-2026-90534 | Flowise before 3.1.4 Cross-Workspace Credential IDOR via node-load-method | MEDIUM | 0.37% | Sep 12, 2026 |
| CVE-2026-90533 | Flowise before 3.1.4 Broken Access Control via organizationuser | MEDIUM | 0.34% | Sep 12, 2026 |
| CVE-2026-52098 | An issue in Flowise 3.1.2 allows a remote attacker to execute arbitrary code via the /api/v1/prediction/<flowId> endpoint | CRITICAL | 1.14% | Sep 10, 2026 |
| CVE-2026-73604 | Flowise before 3.1.3 Credential Exposure via API | HIGH | 0.41% | Aug 13, 2026 |
| CVE-2026-73603 | Flowise before 3.1.4 Credential Abuse via Text-to-Speech | MEDIUM | 0.33% | Aug 13, 2026 |
| CVE-2026-73602 | Flowise before 3.1.3 Sandbox Escape to RCE | CRITICAL | 0.83% | Aug 13, 2026 |
| CVE-2026-73601 | Flowise before 3.1.3 Remote Code Execution via Custom MCP | CRITICAL | 1.10% | Aug 13, 2026 |
Showing 1 to 25 of 128 CVEs