Description
An issue in Flowise 3.1.2 allows a remote attacker to execute arbitrary code via the /api/v1/prediction/<flowId> endpoint
Published: 2026-09-10
Score: 9.8 Critical
EPSS: 1.1% Low
KEV: No
Impact: Remote Code Execution
Action: Immediate Patch
AI Analysis

Impact

Flowise version 3.1.2 contains a code‑injection flaw that allows an attacker who can reach the /api/v1/prediction/<flowId> endpoint to inject and execute arbitrary code on the server. This vulnerability, classified as CWE‑94, gives an attacker full control over the underlying system, compromising confidentiality, integrity, and availability.

Affected Systems

The vulnerable product is Flowise 3.1.2. No other releases are reported as affected. The CDA lists the product as Flowise, and the affected version is specifically 3.1.2.

Risk and Exploitability

The CVSS score of 9.8 places this flaw in the critical range. No EPSS score is available, and the vulnerability is not listed in the CISA KEV catalog. The likely attack vector is a remote attacker sending a crafted request to the /api/v1/prediction endpoint, which bypasses validation and triggers execution. Because the flaw resides in server code, an attacker does not need any privileged client permissions; remote code execution is achievable over the network.

Generated by OpenCVE AI on September 10, 2026 at 23:01 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade Flowise to a patched release that addresses the code‑execution vulnerability.
  • Restrict inbound traffic to the /api/v1/prediction endpoint to trusted IP ranges using firewall or reverse‑proxy rules.
  • Implement strict validation of the flowId path parameter to reject malformed or malicious payloads.
  • Monitor system logs for suspicious activity or outbound connections that may indicate exploitation.

Generated by OpenCVE AI on September 10, 2026 at 23:01 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 15 Sep 2026 19:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:flowiseai:flowise:3.1.2:*:*:*:*:*:*:*

Fri, 11 Sep 2026 08:45:00 +0000

Type Values Removed Values Added
First Time appeared Flowiseai
Flowiseai flowise
Vendors & Products Flowiseai
Flowiseai flowise

Thu, 10 Sep 2026 22:30:00 +0000

Type Values Removed Values Added
Title Remote Code Execution via Unvalidated Flow ID in Flowise 3.1.2

Thu, 10 Sep 2026 19:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-94
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 10 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Description An issue in Flowise 3.1.2 allows a remote attacker to execute arbitrary code via the /api/v1/prediction/<flowId> endpoint
References

Subscriptions

Flowiseai Flowise
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-09-10T18:17:10.632Z

Reserved: 2026-06-08T00:00:00.000Z

Link: CVE-2026-52098

cve-icon Vulnrichment

Updated: 2026-09-10T18:17:06.273Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-10T17:17:04.940

Modified: 2026-09-15T19:09:25.387

Link: CVE-2026-52098

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-11T08:30:11Z

Weaknesses
  • CWE-94

    Improper Control of Generation of Code ('Code Injection')