Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2730▼ 572 respecto a la semana anterior
Críticas / altas1301▼ 186 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)295▼ 215 respecto a la semana anterior
150 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.2) | 0.93% | — | Flowiseai Flowise | 7/3/2026 | 17/6/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.0.13, the /api/v1/attachments/:chatflowId/:chatId endpoint is listed in WHITELIST_URLS, allowing unauthenticated access to the file upload API. While the server validates uploads based on the MIME types defined… | |
| Analizada | Alta (8.7) | 0.65% | — | Flowiseai Flowise | 7/3/2026 | 17/6/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to version 3.0.13, Flowise trusts any HTTP client that sets the header x-request-from: internal, allowing an authenticated tenant session to bypass all /api/v1/** authorization checks. With only a browser cookie, a… | |
| Analizada | Media (6.5) | 0.64% | — | Flowiseai Flowise | 17/10/2025 | 17/6/2026 | Flowise through v3.0.4 is vulnerable to remote code execution via unsanitized evaluation of user input in the "Supabase RPC Filter" field. | |
| Analizada | Alta (8.4) | 6.6% | — | Flowiseai Flowise | 14/10/2025 | 5/10/2026 | Flowise v3.0.1 < 3.0.8 and all versions after with 'ALLOW_BUILTIN_DEP' enabled contain an authenticated remote code execution vulnerability and node VM sandbox escape due to insecure use of integrated modules (Puppeteer and Playwright) within the nodevm execution environment. An authenticated attacker able to create… | |
| Analizada | Crítica (9.9) | 13% | — | Flowiseai Flowise | 8/10/2025 | 30/9/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. In versions prior to 3.0.8, WriteFileTool and ReadFileTool in Flowise do not restrict file path access, allowing authenticated attackers to exploit this vulnerability to read and write arbitrary files to any path in the file… | |
| Analizada | Alta (8.8) | 11% | — | Flowiseai Flowise | 6/10/2025 | 30/9/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. A file upload vulnerability in version 3.0.7 of FlowiseAI allows authenticated users to upload arbitrary files without proper validation. This enables attackers to persistently store malicious Node.js web shells on the server,… | |
| Analizada | Media (6.1) | 14% | — | Flowiseai Flowise | 6/10/2025 | 30/9/2026 | Flowise before 3.0.5 allows XSS via an IFRAME element when an admin views the chat log. | |
| Analizada | Media (6.1) | 0.41% | — | Flowiseai Flowise | 6/10/2025 | 30/9/2026 | Flowise before 3.0.5 allows XSS via a FORM element and an INPUT element when an admin views the chat log. | |
| Analizada | Crítica (10) | 86% | 💥 Exploit | Flowiseai Flowise | 22/9/2025 | 17/6/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. In version 3.0.5, Flowise is vulnerable to remote code execution. The CustomMCP node allows users to input configuration settings for connecting to an external MCP server. This node parses the user-provided mcpServerConfig string… | |
| Analizada | Alta (7.5) | 5.0% | — | Flowiseai Flowise | 22/9/2025 | 30/9/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. In version 3.0.5, a Server-Side Request Forgery (SSRF) vulnerability was discovered in the /api/v1/fetch-links endpoint of the Flowise application. This vulnerability allows an attacker to use the Flowise server as a proxy to… | |
| Aplazada | Crítica (9.6) | 3.4% | — | Flowiseai FlowiseAI | 22/9/2025 | 30/9/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. Prior to August 2025 Cloud-Hosted Flowise, an authenticated vulnerability in Flowise Cloud allows any user on the free tier to access sensitive environment variables from other tenants via the Custom JavaScript Function node. This… | |
| Analizada | Crítica (9.8) | 50% | 💥 Exploit | Flowiseai Flowise | 12/9/2025 | 30/9/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. In version 3.0.5 and earlier, the `forgot-password` endpoint in Flowise returns sensitive information including a valid password reset `tempToken` without authentication or verification. This enables any attacker to generate a… | |
| Analizada | Crítica (9.8) | 75% | 💥 Exploit | Flowiseai Flowise | 14/8/2025 | 17/6/2026 | The Custom MCPs feature is designed to execute OS commands, for instance, using tools like `npx` to spin up local MCP Servers. However, Flowise's inherent authentication and authorization model is minimal and lacks role-based access controls (RBAC). Furthermore, in Flowise versions before 3.0.1 the default… | |
| Analizada | Alta (7.6) | 0.31% | — | Flowiseai Flowise | 9/4/2025 | 5/10/2026 | Flowise <= 2.2.3 is vulnerable to SQL Injection. via tableName parameter at Postgres_VectorStores. | |
| Analizada | Crítica (9.8) | 56% | 💥 Exploit | Flowiseai Flowise | 4/3/2025 | 30/9/2026 | FlowiseAI Flowise v2.2.6 was discovered to contain an arbitrary file upload vulnerability in /api/v1/attachments. | |
| Analizada | Media (6.1) | 0.56% | — | Flowiseai EmbedFlowiseai Flowise | 25/9/2024 | 17/6/2026 | Flowise < 2.1.1 suffers from a Stored Cross-Site vulnerability due to a lack of input sanitization in Flowise Chat Embed < 2.0.0. | |
| Analizada | Alta (7.5) | 14% | — | Flowiseai Flowise | 27/8/2024 | 17/6/2026 | An Unauthenticated Denial of Service (DoS) vulnerability exists in Flowise version 1.8.2 leading to a complete crash of the instance running a vulnerable version due to improper handling of user supplied input to the “/api/v1/get-upload-file” api endpoint. | |
| Modificada | Alta (8.1) | 45% | 💥 Exploit | Flowiseai Flowise | 27/8/2024 | 17/6/2026 | An Authentication Bypass vulnerability exists in Flowise version 1.8.2. This could allow a remote, unauthenticated attacker to access API endpoints as an administrator and allow them to access restricted functionality. | |
| Modificada | Media (6.1) | 0.40% | — | Flowiseai Flowise | 1/7/2024 | 17/6/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. In version 1.4.3 of Flowise, a reflected cross-site scripting vulnerability occurs in the `/api/v1/credentials/id` endpoint. If the default configuration is used (unauthenticated), an attacker may be able to craft a specially… | |
| Modificada | Media (6.1) | 0.46% | — | Flowiseai Flowise | 1/7/2024 | 17/6/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. In version 1.4.3 of Flowise, a reflected cross-site scripting vulnerability occurs in the `/api/v1/chatflows-streaming/id` endpoint. If the default configuration is used (unauthenticated), an attacker may be able to craft a… | |
| Modificada | Media (6.1) | 0.40% | — | Flowiseai Flowise | 1/7/2024 | 17/6/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. In version 1.4.3 of Flowise, a reflected cross-site scripting vulnerability occurs in the `/api/v1/public-chatflows/id` endpoint. If the default configuration is used (unauthenticated), an attacker may be able to craft a specially… | |
| Modificada | Media (6.1) | 0.41% | — | Flowiseai Flowise | 1/7/2024 | 17/6/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. In version 1.4.3 of Flowise, a reflected cross-site scripting vulnerability occurs in the `api/v1/chatflows/id` endpoint. If the default configuration is used (unauthenticated), an attacker may be able to craft a specially crafted… | |
| Modificada | Alta (7.5) | 8.5% | — | Flowiseai Flowise | 1/7/2024 | 17/6/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. In version 1.4.3 of Flowise, A CORS misconfiguration sets the Access-Control-Allow-Origin header to all, allowing arbitrary origins to connect to the website. In the default configuration (unauthenticated), arbitrary origins may… | |
| Modificada | Alta (7.5) | 1.8% | 💥 Exploit | Flowiseai Flowise | 1/7/2024 | 17/6/2026 | Flowise is a drag & drop user interface to build a customized large language model flow. In version 1.4.3 of Flowise, the `/api/v1/openai-assistants-file` endpoint in `index.ts` is vulnerable to arbitrary file read due to lack of sanitization of the `fileName` body parameter. No known patches for this issue are… | |
| Analizada | Alta (7.6) | 60% | 💥 Exploit | Flowiseai Flowise | 29/4/2024 | 17/6/2026 | An issue in FlowiseAI Inc Flowise v.1.6.2 and before allows a remote attacker to execute arbitrary code via a crafted script to the api/v1 component. |