These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.
AI-assisted PatchSiren debrief based on the supplied source corpus. The CVE record was published on 2026-08-04T17:17:01.280Z and has not been modified since then. The NVD entry is currently Received. Flowise, a drag & drop user interface to build a customized large language model flow, had an unauthenticated POST /api/v1/prediction/:id endpoint that accepted an overrideConfig object and spread it into int [truncated]
CVE-2026-69257 Flowise IP address bypass vulnerability debrief. Flowise users and administrators should assess their exposure and update to version 3.1.3 or later. The vulnerability allows an attacker to bypass IP restrictions and potentially access sensitive endpoints. Roles responsible for system configuration, security, and network management should verify IP restrictions and deny lists are properly co [truncated]
CVE-2026-69256 is a critical vulnerability in Flowise, a drag-and-drop user interface for building customized large language model flows. An authenticated user can exploit this vulnerability by creating or modifying a chatflow, adding a CSV Agent with a malicious read_pickle payload in the Additional Parameters, and triggering the /api/v1/prediction/<UUID> endpoint to execute commands. This issue is fixed [truncated]
CVE-2026-69255 is a critical vulnerability in Flowise, a drag-and-drop user interface for building customized large language model flows. An authenticated attacker can inject malicious Python code, leading to arbitrary operating system command execution as root in the Flowise container. The issue is caused by the CSVAgent in packages/components/nodes/agents/CSVAgent/CSVAgent.ts extracting attacker-control [truncated]
CVE-2026-69254 is a critical vulnerability in Flowise, a drag-and-drop user interface for building customized large language model flows. An authenticated attacker can exploit this vulnerability to execute arbitrary system commands as root on the Flowise server. The issue is fixed in version 3.1.3. This vulnerability allows an attacker to execute arbitrary system commands as root, potentially leading to a [truncated]
CVE-2026-69252 is a high-severity vulnerability in Flowise, a drag-and-drop user interface for building customized large language model flows. The vulnerability, fixed in version 3.1.3, allows a low-privileged authenticated API key to list and delete files under the organization storage root and other workspaces within the same organization due to insufficient permission checks on the /api/v1/files route.
CVE-2026-69251 Flowise Critical Vulnerability: Arbitrary Code Execution via TypeORM DataSource Options. Flowise, a drag & drop user interface for building customized large language model flows, has a critical vulnerability (CVE-2026-69251) that allows for arbitrary code execution on the server. This vulnerability exists in the record manager and agent memory nodes, specifically in the MySQLRecordManager, [truncated]
CVE-2026-69250 is an unauthenticated SSRF vulnerability in Flowise's OAuth2 token refresh endpoint. The endpoint performs a server-side HTTP request to the credential-controlled accessTokenUrl without SSRF protections, allowing an attacker to trigger outbound POST requests to a controlled server. This issue is fixed in version 3.1.3. Flowise users and administrators should verify their instance exposure a [truncated]
CVE-2026-46480 is a HIGH-severity vulnerability in Flowise, a drag & drop user interface for building customized large language model flows. The issue, patched in version 3.1.2, allows cross-workspace evaluator takeover due to evaluator create and update mass-assignment.
CVE-2026-46479 is a high-severity vulnerability in Flowise, a drag & drop user interface to build customized large language model flows. The vulnerability, with a CVSS score of 7.7, allows for cross-workspace evaluation takeover due to mass-assignment issues in evaluation create and update operations. This issue was patched in version 3.1.2 of Flowise.
CVE-2026-46478 is a high-severity vulnerability in Flowise, a drag & drop user interface for building customized large language model flows. The issue, tracked as CWE-915, allows for cross-workspace row takeover due to DatasetRow create and update mass-assignment vulnerabilities prior to version 3.1.2. This vulnerability has a CVSS score of 7.7 and is considered HIGH severity.
CVE-2026-46477 is a HIGH severity vulnerability in Flowise, a drag & drop user interface to build a customized large language model flow. The vulnerability allows for cross-workspace dataset takeover due to dataset create and update mass-assignment. This issue was patched in version 3.1.2.
CVE-2026-46476 is a HIGH severity vulnerability in Flowise, a drag & drop user interface to build customized large language model flows. The issue allows for a cross-workspace template takeover due to CustomTemplate create and update mass-assignment. This vulnerability was patched in version 3.1.2.
CVE-2026-46475 is a HIGH-severity vulnerability in Flowise, a drag & drop user interface for building customized large language model flows. The issue, patched in version 3.1.2, allows for cross-workspace assistant takeover due to mass-assignment vulnerabilities in assistant create and update functions.
A vulnerability was discovered in Flowise, a drag & drop user interface for building customized large language model flows. The issue, tracked as CVE-2026-46444, affects versions prior to 3.1.2 and has a CVSS score of 8.7, indicating a high severity. The vulnerability arises from the lack of authentication middleware for all CRUD endpoints of OpenAI Assistants Vector Store, specifically the /api/v1/openai [truncated]
CVE-2026-46443 is a high-severity vulnerability in Flowise, a drag & drop user interface for building customized large language model flows. The issue allows an attacker to access encrypted data when credentials are fetched with a credentialName filter parameter. This vulnerability has been patched in version 3.1.2.
CVE-2026-46442 is a critical vulnerability in Flowise, a drag & drop user interface to build customized large language model flows. Prior to version 3.1.2, the POST /api/v1/node-custom-function endpoint lacks route-level authorization, allowing any authenticated user or API key to submit arbitrary JavaScript to the Custom JS Function node. When E2B_APIKEY is not configured, Flowise executes this code insi [truncated]
A high-severity vulnerability was discovered in FlowiseAI, a drag-and-drop user interface for building customized large language model flows. The issue, tracked as CVE-2026-46441, is a mass assignment vulnerability in the assistant update endpoint. This vulnerability allows authenticated users to modify server-controlled properties such as workspaceId, createdDate, and updatedDate when updating an assista [truncated]
A critical vulnerability, CVE-2026-46440, was found in Flowise, a drag & drop user interface to build a customized large language model flow. The vulnerability has a CVSS score of 9.1 and was patched in version 3.1.2. The issue involves the checkBasicAuth endpoint validating credentials in plaintext without rate limiting and with direct comparison.
A mass assignment vulnerability exists in the chatflow update endpoint of FlowiseAI Flowise prior to version 3.1.2. This vulnerability allows an authenticated user to manipulate internal attributes of a chatflow and reassign it to another workspace, potentially leading to cross-workspace resource reassignment and unauthorized modification of deployment and visibility settings.
CVE-2026-42862 is a high-severity vulnerability in FlowiseAI Flowise, a drag-and-drop user interface for building customized large language model flows. The issue, patched in version 3.1.2, allows authenticated users to manipulate the workspaceId field and reassign tools to arbitrary workspaces, breaking tenant isolation in multi-workspace environments.
A high-severity vulnerability exists in FlowiseAI Flowise, allowing authenticated users to manipulate workspace IDs and reassign variables to arbitrary workspaces. This issue, CVE-2026-42861, has been patched in version 3.1.2.
CVE-2026-43995 affects Flowise versions before 3.1.0. According to the vendor advisory and NVD, several tool implementations used raw HTTP clients directly instead of the secured wrapper, which NVD maps to CWE-918. The issue is fixed in Flowise 3.1.0. With a CVSS 5.3 Medium score and network-based attack conditions, this is a practical patching and configuration review item for anyone exposing affected Fl [truncated]