cbcvebase.

Flowiseai Flowise vulnerabilities

124 known vulnerabilities affecting flowiseai/flowise.

Total CVEs
124
CISA KEV
0
Public exploits
16
Exploited in wild
10
Severity breakdown
CRITICAL43HIGH59MEDIUM21LOW1

Vulnerabilities

Page 4 of 7
CVE-2025-71328P3HIGHCVSS 8.8fixed in 3.0.102026-06-25
CVE-2025-71328 [HIGH] CWE-620 CVE-2025-71328: Flowise before 3.0.10 contains an unverified password change vulnerability. An authenticated user ca Flowise before 3.0.10 contains an unverified password change vulnerability. An authenticated user can change their account password through the account settings (Security) section without supplying the current password or any additional verification, as the application does not enforce a current-password check on the credential change. This can lead t
nvd
CVE-2026-70478P3CRITICALCVSS 9.2fixed in 3.1.22026-08-04
CVE-2026-70478 [CRITICAL] CWE-200 CVE-2026-70478: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3. Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the POST /api/v1/oauth2-credential/refresh/:credentialId endpoint is included in WHITELIST_URLS and requires no authentication. The endpoint decrypts the stored credential, sends a refresh request to the configured OAuth provider with the clien
ghsanvd
CVE-2026-30823P3HIGHCVSS 8.8fixed in 3.0.132026-03-07
CVE-2026-30823 [HIGH] CWE-639 CVE-2026-30823: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to ve Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.0.13, there is an IDOR vulnerability, leading to account takeover and enterprise feature bypass via SSO configuration. This issue has been patched in version 3.0.13.
ghsanvdosv
CVE-2026-46444P3HIGHCVSS 8.8fixed in 3.1.22026-06-08
CVE-2026-46444 [HIGH] CWE-862 CVE-2026-46444: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to ve Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, all CRUD endpoints for OpenAI Assistants Vector Store have no authentication middleware and the route path /api/v1/openai-assistants-vector-store is not in WHITELIST_URLS. However, it is also not protected by the main auth middleware when a
ghsanvd
CVE-2026-69250P3HIGHCVSS 8.5fixed in 3.1.32026-08-04
CVE-2026-69250 [HIGH] CWE-639 CVE-2026-69250: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3. Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the OAuth2 token refresh endpoint POST /api/v1/oauth2-credential/refresh/:credentialId is unauthenticated by design and performs a server-side HTTP request to the credential-controlled accessTokenUrl without SSRF protections. Runtime validation con
ghsanvd
CVE-2026-41266P3HIGHCVSS 7.5fixed in 3.1.02026-04-23
CVE-2026-41266 [HIGH] CWE-200 CVE-2026-41266: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3. Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, /api/v1/public-chatbotConfig/:id ep exposes sensitive data including API keys, HTTP authorization headers and internal configuration without any authentication. An attacker with knowledge just of a chatflow UUID can retrieve credentials stored in p
nvd
CVE-2026-43995P3CRITICALCVSS 9.8fixed in 3.1.02026-05-11
CVE-2026-43995 [CRITICAL] CWE-918 CVE-2026-43995: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3. Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, multiple tool implementations directly import and invoke raw HTTP clients (node-fetch, axios) instead of using the secured wrapper. These tools include (1) OpenAPIToolkit/OpenAPIToolkit.ts, (2) WebScraperTool/WebScraperTool.ts, (3) MCP/core.ts,
nvd
CVE-2025-71332P3HIGHCVSS 8.8≤ 2.2.72026-06-24
CVE-2025-71332 [HIGH] CWE-89 CVE-2025-71332: Flowise through 2.2.7 contains a SQL injection vulnerability in the importChatflows API. Due to insu Flowise through 2.2.7 contains a SQL injection vulnerability in the importChatflows API. Due to insufficient validation of the chatflow.id value, an authenticated user can supply a crafted JSON import file whose id field is concatenated unsanitized into a SQL IN clause, allowing arbitrary SQL to be executed, including blind and error-based extraction o
nvd
CVE-2026-41271P3HIGHCVSS 8.3fixed in 3.1.02026-04-23
CVE-2026-41271 [HIGH] CWE-918 CVE-2026-41271: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3. Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, a Server-Side Request Forgery (SSRF) vulnerability exists in FlowiseAI's POST/GET API Chain components that allows unauthenticated attackers to force the server to make arbitrary HTTP requests to internal and external systems. By injecting maliciou
nvd
CVE-2026-71962P3HIGHCVSS 7.5≥ 2.2.4, ≤ 3.1.42026-08-10
CVE-2026-71962 [HIGH] CWE-862 CVE-2026-71962: Flowise versions 2.2.4 through 3.1.4 contain a missing authorization vulnerability in the POST /api/ Flowise versions 2.2.4 through 3.1.4 contain a missing authorization vulnerability in the POST /api/v1/openai-assistants-file/download endpoint that allows unauthenticated attackers to access private files by exploiting the endpoint's inclusion in the global authentication whitelist, which bypasses all session and API key verification. Attackers can s
nvd
CVE-2025-59527P3HIGHCVSS 7.5v3.0.5v= 3.0.52025-09-22
CVE-2025-59527 [HIGH] CWE-918 CVE-2025-59527: Flowise is a drag & drop user interface to build a customized large language model flow. In version Flowise is a drag & drop user interface to build a customized large language model flow. In version 3.0.5, a Server-Side Request Forgery (SSRF) vulnerability was discovered in the /api/v1/fetch-links endpoint of the Flowise application. This vulnerability allows an attacker to use the Flowise server as a proxy to access internal network web services an
ghsanvdosv
CVE-2026-46440P3CRITICALCVSS 9.1fixed in 3.1.22026-06-08
CVE-2026-46440 [CRITICAL] CWE-522 CVE-2026-46440: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to ve Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, the checkBasicAuth endpoint validates credentials in plaintext without rate limiting and with direct comparison. This issue has been patched in version 3.1.2.
ghsanvd
CVE-2026-69253P3CRITICALCVSS 9.0fixed in 3.1.32026-08-04
CVE-2026-69253 [CRITICAL] CWE-95 CVE-2026-69253: Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows. Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows. Prior to version 3.1.3, several custom-tool components — AgentAsTool, ChatflowTool, and ExecuteFlow — ran code in the in-process vm2 sandbox. To build that code, they inserted a user-controlled baseURL value straight into the JavaScript source, for ex
ghsanvd
CVE-2026-46478P3HIGHCVSS 8.8fixed in 3.1.22026-06-08
CVE-2026-46478 [HIGH] CWE-915 CVE-2026-46478: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to ve Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, DatasetRow create and update mass-assignment allows cross-workspace row takeover. This issue has been patched in version 3.1.2.
ghsanvd
CVE-2026-46479P3HIGHCVSS 8.8fixed in 3.1.22026-06-08
CVE-2026-46479 [HIGH] CWE-915 CVE-2026-46479: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to ve Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, evaluation create and update mass-assignment allows cross-workspace evaluation takeover. This issue has been patched in version 3.1.2.
ghsanvd
CVE-2026-46477P3HIGHCVSS 8.8fixed in 3.1.22026-06-08
CVE-2026-46477 [HIGH] CWE-915 CVE-2026-46477: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to ve Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, dataset create and update mass-assignment allows cross-workspace dataset takeover. This issue has been patched in version 3.1.2.
ghsanvd
CVE-2026-46480P3HIGHCVSS 8.8fixed in 3.1.22026-06-08
CVE-2026-46480 [HIGH] CWE-915 CVE-2026-46480: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to ve Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, evaluator create and update mass-assignment allows cross-workspace evaluator takeover. This issue has been patched in version 3.1.2.
ghsanvd
CVE-2026-46475P3HIGHCVSS 8.8fixed in 3.1.22026-06-08
CVE-2026-46475 [HIGH] CWE-915 CVE-2026-46475: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to ve Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, assistant create and update mass-assignment allows cross-workspace assistant takeover. This issue has been patched in version 3.1.2.
ghsanvd
CVE-2026-46476P3HIGHCVSS 8.8fixed in 3.1.22026-06-08
CVE-2026-46476 [HIGH] CWE-915 CVE-2026-46476: Flowise is a drag & drop user interface to build a customized large language model flow. Prior to ve Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, CustomTemplate create and update mass-assignment allows cross-workspace template takeover. This issue has been patched in version 3.1.2.
ghsanvd
CVE-2025-71337P3HIGHCVSS 8.3≤ 3.0.72026-06-23
CVE-2025-71337 [HIGH] CWE-620 CVE-2025-71337: Flowise before 3.0.10 (affected versions 3.0.7 and earlier) contains an unverified email change vuln Flowise before 3.0.10 (affected versions 3.0.7 and earlier) contains an unverified email change vulnerability. An authenticated user can change the account email address, used as a login identifier and password-recovery channel, via the account profile endpoint without confirming the change to the original email address or re-entering the current pass
nvd
Flowiseai Flowise vulnerabilities | cvebase