CVE-2025-8943 is a critical remote code execution (RCE) vulnerability affecting Flowise versions prior to 3.0.1. It stems from the Custom MCPs feature, which executes OS commands, combined with Flowise's minimal authentication and lack of RBAC, especially when no authentication is configured by default. This allows unauthenticated network attackers to execute arbitrary OS commands on the underlying system, leading to complete compromise. The vulnerability has a CVSS score of 9.8 (Critical) and an EPSS score indicating a high likelihood of exploitation. Exploit modules are publicly available in Metasploit and Nuclei, though there is currently no evidence of active exploitation or significant community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 3.0.1CPE matchmatch criteria | cpe:2.3:a:flowiseai:flowise:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.