CSIRTS // UNIFIED SECURITY ADVISORY FEEDSYS ● ONLINE · POWERED BY INTELFUSIONS.COM

[NEW] [high] Flowise: Multiple vulnerabilities

high
An attacker can exploit multiple vulnerabilities in Flowise to execute arbitrary code – even with root privileges – gain elevated privileges, bypass security measures, hijack sessions, and disclose or manipulate data.

CSIRTS triage

What
Multiple vulnerabilities allow an attacker to execute arbitrary code, gain elevated privileges, and manipulate data.
Who is affected
Deployments of Flowise are affected.
Urgency
Remediation is high priority due to the potential for severe exploitation and data compromise.
Action
Update to the latest version of Flowise.

AI-assisted analysis generated from the source advisory — verify against the original.

⚡ Watch Flowise

Get an email when a new Flowise advisory drops — max one per day, one-click unsubscribe.

Details

Source
CERT-Bund (BSI) Security Advisories (DE · national-cert · site)
Severity
high
Published
2026-07-30
Exploitation
Not in CISA KEV at last sync
Language
Machine-translated to English — verify against the original

Original advisory: https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-2589

More from CERT-Bund (BSI) Security Advisories