Description
Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the /api/v1/files route was protected only by the feat:files feature gate and did not enforce checkPermission on GET or DELETE. A low-privileged authenticated API key with unrelated permissions could call GET /api/v1/files to list files under the organization storage root and DELETE /api/v1/files?path=... to delete files belonging to other workspaces in the same organization because getAllFiles and deleteFile used activeOrganizationId and a user-controlled path without restricting access by permissions or activeWorkspaceId. This issue is fixed in version 3.1.3.
Published: 2026-08-04
Score: 7.2 High
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability permits an attacker who holds a low‑privileged authenticated API key to call the /api/v1/files endpoint without authorization checks. By issuing a GET request the attacker can list all files stored under the organization root, and by forming a DELETE request they can delete any file belonging to any workspace within the same organization. The flaw arises because the backend functions use the activeOrganizationId and an unvalidated user‑supplied path without verifying the caller’s permissions, a classic missing authorization issue (CWE‑862). Consequently, confidentiality and integrity of the organization’s files are compromised, and critical data can be permanently removed.

Affected Systems

Flowise AI Flowise prior to version 3.1.3 is affected. The issue was addressed in the 3.1.3 release, which added proper permission checks to the /api/v1/files route.

Risk and Exploitability

The CVSS score of 7.2 classifies the threat as high severity. EPSS data is not available, so the likelihood of exploitation cannot be quantified, and the vulnerability has not yet been listed in the CISA KEV catalog. The attack requires only an authenticated API key with low permissions, a condition that is realistically met by users with any API access, making the vulnerability broadly exploitable within an organization.

Generated by OpenCVE AI on August 4, 2026 at 19:45 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update Flowise to version 3.1.3 or later to apply the fixed authorization checks
  • If an update is delayed, revoke or limit low‑privileged API keys and/or block the /api/v1/files endpoint for those keys
  • Monitor the API activity logs for unexpected GET or DELETE calls to /api/v1/files and investigate deletions

Generated by OpenCVE AI on August 4, 2026 at 19:45 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Github GHSA Github GHSA GHSA-wp74-f5hh-5f3r Flowise: Missing authorization on `/api/v1/files` allows low-privileged API keys to list and delete files across workspaces within the same organization
History

Tue, 04 Aug 2026 17:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 04 Aug 2026 17:15:00 +0000

Type Values Removed Values Added
First Time appeared Flowiseai
Flowiseai flowise
Vendors & Products Flowiseai
Flowiseai flowise

Tue, 04 Aug 2026 15:45:00 +0000

Type Values Removed Values Added
Description Flowise is a drag & drop user interface to build a customized large language model flow. Prior to 3.1.3, the /api/v1/files route was protected only by the feat:files feature gate and did not enforce checkPermission on GET or DELETE. A low-privileged authenticated API key with unrelated permissions could call GET /api/v1/files to list files under the organization storage root and DELETE /api/v1/files?path=... to delete files belonging to other workspaces in the same organization because getAllFiles and deleteFile used activeOrganizationId and a user-controlled path without restricting access by permissions or activeWorkspaceId. This issue is fixed in version 3.1.3.
Title Flowise: Missing authorization on `/api/v1/files` allows low-privileged API keys to list and delete files across workspaces within the same organization
Weaknesses CWE-862
References
Metrics cvssV4_0

{'score': 7.2, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Flowiseai Flowise
cve-icon MITRE

Status: PUBLISHED

Assigner: GitHub_M

Published:

Updated: 2026-08-04T16:43:11.797Z

Reserved: 2026-08-03T19:54:19.853Z

Link: CVE-2026-69252

cve-icon Vulnrichment

Updated: 2026-08-04T16:42:53.809Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-04T20:00:05Z

Weaknesses