Flowise is officially being sunset and will soon cease active maintenance or support. As a result, we are no longer accepting new security vulnerability reports for this repository. You can find more information here.
This repository was archived by the owner on Aug 13, 2026. It is now read-only.
Security: FlowiseAI/Flowise
Security
SECURITY.md
-
Remote Code Execution Vulnerability in CSVAgentGHSA-x6vm-w76m-8j7g published
Jul 29, 2026 by igor-magun-wdCritical -
Flowise vm2 Sandbox Escape to RCEGHSA-rqh4-rxw3-93rp published
Jul 29, 2026 by igor-magun-wdCritical -
Missing authorization on Flowise upsert-history endpoints allows authenticated users and API keys to read and delete arbitrary document-store upsert history across workspacesGHSA-jvx3-mjpw-r4gh published
Sep 10, 2026 by igor-magun-wdHigh -
SSRF Protection Bypass via IPv4-Mapped IPv6 Addresses in FlowiseGHSA-c6xh-wv4j-ppv5 published
Jul 29, 2026 by igor-magun-wdHigh -
RCE via NodeVM Sandbox Escape in executeJavaScriptCode() nodeVMOptions OverrideGHSA-3769-jgqc-cxm7 published
Jul 29, 2026 by igor-magun-wdCritical -
Cross-Session Data Leakage via NoSQL Injection in MongoDBMemory NodeGHSA-wpvf-4vfx-rgxm published
Aug 31, 2026 by igor-magun-wdHigh -
CVE-2025-8943 Patch Bypass: npm_config_yes bypasses MCP environment variable blocklist (Unauthenticated RCE)GHSA-xc48-889x-5qmw published
Jul 29, 2026 by igor-magun-wdHigh -
SSRF bypass via Cheerio/Playwright/Puppeteer document loaders — not covered by httpSecurity deny listGHSA-9cvr-5wv9-2gxr published
Aug 31, 2026 by igor-magun-wdHigh -
Multiple AI Infrastructure Security Vulnerabilities — Credential Exposure, MCP Bypass, Sandbox EscapeGHSA-vrr6-xgc3-j99r published
Aug 31, 2026 by igor-magun-wdHigh -
Vector Store No Permission ChecksGHSA-hmg2-jjjx-jcp2 published
May 14, 2026 by igor-magun-wdHigh
Learn more about advisories related to FlowiseAI/Flowise in the GitHub Advisory Database