Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Flowiseai

First CVE: Apr 29, 2024Active for: 2 yearsTotal CVEs: 86
72.5
VTI Score
TOP TARGET

Flowiseai maintains a narrowly focused vulnerability footprint centered on its Flowise low-code AI application platform and embedding tools, which despite modest product scope have achieved prominence in the emerging AI-application development landscape. Vulnerabilities affecting the vendor skew strongly toward critical-severity outcomes and frequently acquire public exploit code, reflecting the combination of web-facing interfaces, user-supplied configuration, and access to backend AI model execution. The recurring exposure patterns cluster around dynamic attribute manipulation, authorization bypass through user-controlled keys, improper access control, cross-site scripting, and server-side request forgery—weakness classes that are characteristic of web frameworks handling untrusted model configurations and integration chains. Defenders deploying Flowise instances should apply updates urgently given the severity profile and treat exposed interfaces as high-priority targets; current exploitation activity and exposure counts are shown alongside this summary.

FAUCET AI Generated
86
Total CVEs
More Total CVEs than 99% of tracked vendors
14.3
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 100% of tracked vendors
8.1
Avg CVSS Score
Higher Avg CVSS Score than 80% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Flowiseai over time

Volume of CVEsAvg CVSS Base Score
First CVE
Apr 29, 2024
2 years ago
Most Recent CVE
Jul 12, 2026
12 days ago

Products(2 total)

Top CVEs

Signals from CVEs in this vendor scope (86 CVEs).

86 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2025-59528CRITICAL
Flowise is a drag & drop user interface to build a customized large language model flow. In version 3.0.5, Flowise is vulnerable to remote code execution. The CustomMCP node allows
Sep 22, 202510.095NOYES
CVE-2025-8943CRITICAL
The Custom MCPs feature is designed to execute OS commands, for instance, using tools like `npx` to spin up local MCP Servers. However, Flowise's inherent authentication and author
Aug 14, 20259.887NOYES
CVE-2025-58434CRITICAL
Flowise is a drag & drop user interface to build a customized large language model flow. In version 3.0.5 and earlier, the `forgot-password` endpoint in Flowise returns sensitive i
Sep 12, 20259.880NOYES
CVE-2025-26319CRITICAL
FlowiseAI Flowise v2.2.6 was discovered to contain an arbitrary file upload vulnerability in /api/v1/attachments.
Mar 4, 20259.872NOYES
CVE-2024-31621HIGH
An issue in FlowiseAI Inc Flowise v.1.6.2 and before allows a remote attacker to execute arbitrary code via a crafted script to the api/v1 component.
Apr 29, 20247.672NOYES
CVE-2026-30824CRITICAL
Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.0.13, the NVIDIA NIM router (/api/v1/nvidia-nim/*) is whitelisted in the
Mar 7, 20269.864NOYES
CVE-2024-8181HIGH
An Authentication Bypass vulnerability exists in Flowise version 1.8.2. This could allow a remote, unauthenticated attacker to access API endpoints as an administrator and allow th
Aug 27, 20248.159NOYES
CVE-2026-46442CRITICAL
Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, POST /api/v1/node-custom-function lacks route-level authorization,
Jun 8, 20269.953NOYES
CVE-2026-41264CRITICAL
Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, the specific flaw exists within the run method of the CSV_Agents class. The
Apr 23, 20269.845NOYES
CVE-2026-56271CRITICAL
Flowise before 3.1.0 (affected versions 3.0.13 and earlier) uses weak hardcoded default JWT secrets ('auth_token', 'refresh_token') and default audience and issuer values ('AUDIENC
Jul 12, 20269.844NONO
View all 86 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products86 CVEs
20%
47%
33%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local2 (2.3%)
Network84 (97.7%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low79 (91.9%)
High7 (8.1%)
Unknown0 (0.0%)
User Interaction
None75 (87.2%)
Unknown0 (0.0%)
Required11 (12.8%)
Privileges Required
Low38 (44.2%)
High2 (2.3%)
None46 (53.5%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (86 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
3 CVEs
3.5% of CVEs· 98th percentile
Nuclei
9 CVEs
10.5% of CVEs· 96th percentile
ExploitDB
4 CVEs
4.7% of CVEs· 75th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Flowiseai.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Flowiseai — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Flowiseai's Products

View all 6 CNAs →

Top CWEs