Impact
In Flowise versions older than 3.1.4, the SQL Database Chain node does not validate file paths when connecting to SQLite databases. This flaw permits an attacker who has authenticated access to the system to write files to arbitrary locations. The ability to place malicious SQLite files in system directories or to inject files into the web root enables execution of arbitrary code or stored cross‑site scripting attacks, compromising confidentiality, integrity, and availability of the application and potentially the underlying host system.
Affected Systems
The vulnerability affects Flowise AI’s Flowise application, any deployment running a version earlier than 3.1.4. The flaw is present in all builds that include the SQL Database Chain node, regardless of database choice, as the path validation shortfall exists for SQLite connections.
Risk and Exploitability
The CVSS score of 8.7 indicates high severity. The EPSS score of < 1% indicates a very low probability of exploitation in the wild; the flaw is not listed in CISA’s KEV catalog. Attackers must be able to authenticate to the Flowise instance and then use the vulnerable node to supply a crafted path; therefore, protection of credentials is critical. Once authenticated, the attacker can read and write files by controlling the path string, implying that the vulnerability is exploitable in an authenticated context with local file write permissions.
OpenCVE Enrichment