flowiseai
57 known vulnerabilities affecting flowiseai products.
Products
Vulnerabilities by priority
| CVE | Priority | EPSS | CVSS | KEV | What |
|---|---|---|---|---|---|
| CVE-2026-46442 | High | 36.3% | 9.9 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-69264 | High | 1.2% | 9.8 | Prior to 3.1.3, Flowise CSVAgent interpolates an attacker-controlled segment of … | |
| CVE-2025-71338 | High | 1.2% | 10.0 | Flowise through 2.2.7 fails to sanitize path segments in the document-store load… | |
| CVE-2026-73487 | High | 1.0% | 9.8 | Flowise before 3.1.3 contains a regex-based Python code validator bypass in CSV … | |
| CVE-2026-70470 | High | 0.9% | 9.8 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-73602 | High | 0.8% | 9.9 | Flowise before 3.1.3 contains a sandbox escape vulnerability in the vm2 JavaScri… | |
| CVE-2026-69263 | High | 0.5% | 9.8 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-69258 | High | 0.5% | 9.1 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-67622 | High | 0.3% | 9.9 | Flowise through 3.1.4 contains an insecure direct object reference vulnerability… | |
| CVE-2026-46441 | High | 0.3% | 9.6 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-42861 | High | 0.3% | 9.6 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-69251 | Medium | 3.3% | 8.8 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-73601 | Medium | 0.9% | 8.8 | Flowise versions before 3.1.3 contain a remote code execution vulnerability in t… | |
| CVE-2026-70477 | Medium | 0.8% | 9.8 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-52098 | Medium | 0.8% | 9.8 | An issue in Flowise 3.1.2 allows a remote attacker to execute arbitrary code via… | |
| CVE-2026-69256 | Medium | 0.8% | 8.8 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-69259 | Medium | 0.7% | 8.8 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-71962 | Medium | 0.7% | 7.5 | Flowise versions 2.2.4 through 3.1.4 contain a missing authorization vulnerabili… | |
| CVE-2026-73486 | Medium | 0.7% | 8.8 | Flowise before 3.1.3 contains a code injection vulnerability in the CSV Agent no… | |
| CVE-2026-69254 | Medium | 0.7% | 8.8 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-73485 | Medium | 0.6% | 8.8 | Flowise before 3.1.3 contains a code injection vulnerability in the Airtable Age… | |
| CVE-2026-69253 | Medium | 0.6% | 8.8 | Flowise is a drag-and-drop user interface for building customized large language… | |
| CVE-2026-73483 | Medium | 0.6% | 8.8 | Flowise (packages flowise and flowise-components) in versions <= 3.1.2 contain a… | |
| CVE-2026-69255 | Medium | 0.6% | 8.8 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-70478 | Medium | 0.5% | 10.0 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-70636 | Medium | 0.5% | 7.5 | Flowise through 3.1.4 contains an authentication bypass vulnerability that allow… | |
| CVE-2026-73484 | Medium | 0.4% | 8.1 | Flowise before 3.1.3 contains a sandbox escape vulnerability in pythonCodeValida… | |
| CVE-2026-70474 | Medium | 0.4% | 8.1 | Flowise is a drag-and-drop user interface for building customized large language… | |
| CVE-2026-69250 | Medium | 0.4% | 7.5 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-69252 | Medium | 0.4% | 8.8 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-46478 | Medium | 0.3% | 8.8 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-67621 | Medium | 0.3% | 7.6 | Flowise through 3.1.4 contains a missing authorization vulnerability that allows… | |
| CVE-2026-70472 | Medium | 0.3% | 8.8 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-46475 | Medium | 0.3% | 8.8 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-46476 | Medium | 0.3% | 8.8 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-46477 | Medium | 0.3% | 8.8 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-46479 | Medium | 0.3% | 8.8 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-46480 | Medium | 0.3% | 8.8 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-46444 | Medium | 0.3% | 8.8 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-67620 | Medium | 0.3% | 7.7 | Flowise through 3.1.4 contains a server-side request forgery vulnerability in th… | |
| CVE-2026-70476 | Medium | 0.3% | 8.2 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-69262 | Medium | 0.3% | 8.1 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-70473 | Medium | 0.3% | 8.5 | Flowise is a drag-and-drop user interface for building customized large language… | |
| CVE-2026-69257 | Medium | 0.3% | 8.6 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-90535 | Medium | 0.3% | 7.5 | Flowise versions before 3.1.4 contain an unauthenticated denial of service vulne… | |
| CVE-2026-42863 | Medium | 0.3% | 8.1 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-46440 | Medium | 0.3% | 9.1 | Flowise is a drag & drop user interface to build a customized large language mod… | |
| CVE-2026-73604 | Low | 0.4% | 6.5 | Flowise before 3.1.3 contains an incomplete credential redaction vulnerability i… | |
| CVE-2026-73603 | Low | 0.3% | 5.3 | Flowise before 3.1.4 fails to validate chatflow visibility in the unauthenticate… | |
| CVE-2026-73488 | Low | 0.3% | 6.5 | Flowise versions before 3.1.3 contain an insecure direct object reference vulner… |
Page 1 of 2
Next →