Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2855▼ 333 respecto a la semana anterior
Críticas / altas1381▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)296▼ 213 respecto a la semana anterior
150 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (6) | 0.32% | — | Flowiseai Flowise | 23/6/2026 | 25/6/2026 | Flowise before 3.1.0 contains a server-side request forgery vulnerability in the Execute Flow node that allows attackers to bypass security validation by providing intranet addresses through the base URL field. Attackers can initiate HTTP requests to internal network addresses, access cloud metadata, and enumerate… | |
| Analizada | Alta (8.7) | 7.5% | 💥 Exploit | Flowiseai Flowise | 23/6/2026 | 25/6/2026 | Flowise before 3.1.2 contains multiple OS command injection vulnerabilities in the Custom MCP Server feature due to incomplete command-flag validation and a regex bypass in local file access restrictions. An attacker with a Flowise account of any role, or API access with view/update permissions for chatflows, can… | |
| Analizada | Alta (8.7) | 0.42% | — | Flowiseai Flowise | 23/6/2026 | 30/9/2026 | Flowise before 3.0.10 (affected versions 3.0.7 and earlier) contains an unverified email change vulnerability. An authenticated user can change the account email address, used as a login identifier and password-recovery channel, via the account profile endpoint without confirming the change to the original email… | |
| Analizada | Media (5.3) | 0.39% | — | Flowiseai Flowise | 22/6/2026 | 25/6/2026 | Flowise before 3.1.2 contains an information disclosure vulnerability in the /api/v1/chatflows/apikey/:apikey endpoint. When the keyonly query parameter is omitted (the default), the endpoint returns not only the chatflows bound to the supplied API key but also all chatflows across every workspace that have no API key… | |
| Aplazada | Baja (2.1) | 0.49% | — | Flowiseai FlowiseAI | 22/6/2026 | 22/6/2026 | A vulnerability was determined in FlowiseAI Flowise up to 3.1.2. The impacted element is an unknown function of the file packages/components/nodes/documentloaders/S3/S3.ts of the component S3 Document Loader. Executing a manipulation can lead to path traversal. It is possible to launch the attack remotely. The vendor… | |
| Aplazada | Media (6) | 0.37% | — | Flowiseai FlowiseAI | 20/6/2026 | 22/6/2026 | Flowise before 3.1.2 contains a mass assignment vulnerability in the PUT /api/v1/user endpoint that allows authenticated users to directly modify the credential field without validation. Attackers can bypass password change verification and session invalidation by supplying a crafted password hash, establishing… | |
| Aplazada | Media (6.9) | 0.46% | — | Flowiseai FlowiseAI | 20/6/2026 | 22/6/2026 | Flowise before 3.0.13 contains an information exposure vulnerability in the POST /api/v1/account/forgot-password endpoint that returns full user objects including PII to unauthenticated attackers. An attacker can enumerate valid email addresses and harvest sensitive user data including user IDs, names, account status,… | |
| Analizada | Media (5.1) | 0.33% | — | Flowiseai Flowise | 20/6/2026 | 23/6/2026 | Flowise before 3.0.8 contains a cross-site scripting (XSS) vulnerability caused by insufficient input filtering in chat messages and custom agent functions. An attacker can inject malicious JavaScript by sending an iframe payload (e.g., <iframe src="javascript:alert(document.cookie)">) in a chat box, or by having a… | |
| Aplazada | Crítica (9.3) | 0.93% | — | Flowiseai FlowiseAI | 20/6/2026 | 22/6/2026 | Flowise before 2.1.4 allows configuration to be injected into the Chainflow during execution via the overrideConfig option, supported in both the frontend web integration and the backend Prediction API. Because this feature is enabled by default with no allow-list of permitted variables and relies on vm2 for… | |
| Analizada | Alta (7.7) | 0.56% | — | Flowiseai Flowise | 8/6/2026 | 23/7/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, evaluator create and update mass-assignment allows cross-workspace evaluator takeover. This issue has been patched in version 3.1.2. | |
| Analizada | Alta (7.7) | 0.56% | — | Flowiseai Flowise | 8/6/2026 | 23/7/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, evaluation create and update mass-assignment allows cross-workspace evaluation takeover. This issue has been patched in version 3.1.2. | |
| Analizada | Alta (7.7) | 0.56% | — | Flowiseai Flowise | 8/6/2026 | 23/7/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, DatasetRow create and update mass-assignment allows cross-workspace row takeover. This issue has been patched in version 3.1.2. | |
| Analizada | Alta (7.7) | 0.56% | — | Flowiseai Flowise | 8/6/2026 | 23/7/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, dataset create and update mass-assignment allows cross-workspace dataset takeover. This issue has been patched in version 3.1.2. | |
| Analizada | Alta (7.7) | 0.56% | — | Flowiseai Flowise | 8/6/2026 | 23/7/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, CustomTemplate create and update mass-assignment allows cross-workspace template takeover. This issue has been patched in version 3.1.2. | |
| Analizada | Alta (7.7) | 0.56% | — | Flowiseai Flowise | 8/6/2026 | 23/7/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, assistant create and update mass-assignment allows cross-workspace assistant takeover. This issue has been patched in version 3.1.2. | |
| Analizada | Alta (8.7) | 0.56% | — | Flowiseai Flowise | 8/6/2026 | 23/7/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, all CRUD endpoints for OpenAI Assistants Vector Store have no authentication middleware and the route path /api/v1/openai-assistants-vector-store is not in WHITELIST_URLS. However, it is also not protected… | |
| Analizada | Alta (7) | 0.37% | — | Flowiseai Flowise | 8/6/2026 | 23/7/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, when credentials are fetched with a credentialName filter parameter, the encryptedData field is not stripped from the response. The code properly omits encryptedData when no filter is used but fails to do… | |
| Analizada | Crítica (9.4) | 3.4% | 💥 Exploit | Flowiseai Flowise | 8/6/2026 | 23/7/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, POST /api/v1/node-custom-function lacks route-level authorization, allowing any authenticated user or API key to submit arbitrary JavaScript to the Custom JS Function node. When E2B_APIKEY is not configured… | |
| Analizada | Alta (7.6) | 0.37% | — | Flowiseai Flowise | 8/6/2026 | 23/7/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, a mass assignment vulnerability exists in the assistant update endpoint of FlowiseAI. The endpoint allows authenticated users to modify server-controlled properties such as workspaceId, createdDate, and… | |
| Analizada | Crítica (9.1) | 0.42% | — | Flowiseai Flowise | 8/6/2026 | 23/7/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, the checkBasicAuth endpoint validates credentials in plaintext without rate limiting and with direct comparison. This issue has been patched in version 3.1.2. | |
| Analizada | Alta (7.6) | 0.37% | — | Flowiseai Flowise | 8/6/2026 | 23/7/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, a mass assignment vulnerability exists in the chatflow update endpoint of FlowiseAI. The endpoint allows clients to modify server-controlled properties such as deployed, isPublic, workspaceId, createdDate,… | |
| Analizada | Alta (7.6) | 0.27% | — | Flowiseai Flowise | 8/6/2026 | 23/7/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, a mass assignment vulnerability exists in the tool update endpoint of FlowiseAI. The endpoint allows authenticated users to modify server-controlled properties such as workspaceId, createdDate, and… | |
| Analizada | Alta (7.6) | 0.37% | — | Flowiseai Flowise | 8/6/2026 | 23/7/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.1.2, a mass assignment vulnerability exists in the variable update endpoint of FlowiseAI. The endpoint allows authenticated users to modify server-controlled properties such as workspaceId, createdDate, and… | |
| Analizada | Media (5.3) | 0.48% | — | Flowiseai Flowise | 11/5/2026 | 17/6/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.0, multiple tool implementations directly import and invoke raw HTTP clients (node-fetch, axios) instead of using the secured wrapper. These tools include (1) OpenAPIToolkit/OpenAPIToolkit.ts, (2)… | |
| Analizada | Baja (2.9) | 0.53% | — | Flowiseai Flowise | 6/5/2026 | 17/6/2026 | A vulnerability was detected in FlowiseAI Flowise up to 3.0.12. This affects the function verify of the file packages/server/src/enterprise/services/account.service.ts of the component Endpoint. Performing a manipulation results in information disclosure. Remote exploitation of the attack is possible. The attack is… |