Description
Flowise versions before 3.1.4 fail to validate file paths in the SQL Database Chain node when connecting to SQLite databases, allowing authenticated attackers to write arbitrary files. Attackers can write malicious SQLite databases to system directories or inject files into the web root to execute commands or perform stored XSS attacks.
Published: 2026-09-15
Score: 8.7 High
EPSS: < 1% Very Low
KEV: No
Impact: Remote Code Execution via unwarranted file writes
Action: Upgrade
AI Analysis

Impact

In Flowise versions older than 3.1.4, the SQL Database Chain node does not validate file paths when connecting to SQLite databases. This flaw permits an attacker who has authenticated access to the system to write files to arbitrary locations. The ability to place malicious SQLite files in system directories or to inject files into the web root enables execution of arbitrary code or stored cross‑site scripting attacks, compromising confidentiality, integrity, and availability of the application and potentially the underlying host system.

Affected Systems

The vulnerability affects Flowise AI’s Flowise application, any deployment running a version earlier than 3.1.4. The flaw is present in all builds that include the SQL Database Chain node, regardless of database choice, as the path validation shortfall exists for SQLite connections.

Risk and Exploitability

The CVSS score of 8.7 indicates high severity. The EPSS score of < 1% indicates a very low probability of exploitation in the wild; the flaw is not listed in CISA’s KEV catalog. Attackers must be able to authenticate to the Flowise instance and then use the vulnerable node to supply a crafted path; therefore, protection of credentials is critical. Once authenticated, the attacker can read and write files by controlling the path string, implying that the vulnerability is exploitable in an authenticated context with local file write permissions.

Generated by OpenCVE AI on September 20, 2026 at 16:38 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply the official Flowise update to version 3.1.4 or later, which introduces proper path validation for all database connections.
  • If an upgrade cannot be performed immediately, disable or remove the SQL Database Chain node feature from the Flowise workflow to eliminate the vulnerable entry point.
  • Limit the process privileges so the Flowise application cannot write to critical system directories or the web root, and configure strict file‑system permissions to prevent arbitrary file creation.

Generated by OpenCVE AI on September 20, 2026 at 16:38 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 15 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 15 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Description Flowise versions before 3.1.4 fail to validate file paths in the SQL Database Chain node when connecting to SQLite databases, allowing authenticated attackers to write arbitrary files. Attackers can write malicious SQLite databases to system directories or inject files into the web root to execute commands or perform stored XSS attacks.
Title Flowise before 3.1.4 Remote Code Execution via SQL Database Chain
First Time appeared Flowiseai
Flowiseai flowise
Weaknesses CWE-22
CPEs cpe:2.3:a:flowiseai:flowise:*:*:*:*:*:*:*:*
Vendors & Products Flowiseai
Flowiseai flowise
References
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}

cvssV4_0

{'score': 8.7, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Flowiseai Flowise
cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2026-09-15T15:45:42.946Z

Reserved: 2026-09-15T11:06:02.263Z

Link: CVE-2026-91934

cve-icon Vulnrichment

Updated: 2026-09-15T15:45:39.273Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-15T16:17:44.317

Modified: 2026-09-16T20:17:00.597

Link: CVE-2026-91934

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T16:45:07Z

Weaknesses
  • CWE-22

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')