Description
Flowise versions before 3.1.4 contain a server-side request forgery vulnerability in Cheerio, Playwright, and Puppeteer document loader nodes that bypass SSRF protection. Attackers can provide arbitrary URLs to fetch cloud metadata, internal services, and private network resources with response content returned as document text.
Published: 2026-09-15
Score: 7.6 High
EPSS: < 1% Very Low
KEV: No
Impact: Server‑Side Request Forgery enabling unauthorized network access
Action: Patch Immediately
AI Analysis

Impact

The vulnerability exists in Flowise document loader nodes based on Cheerio, Playwright, and Puppeteer. It allows the server to fetch the target resource, bypassing the built‑in SSRF guard. The fetched content is returned as document text, enabling read access to internal services, cloud metadata, or other private network resources. This compromise threatens confidentiality by exposing internal data and can be used to gain further footholds.

Affected Systems

FlowiseAI Flowise versions earlier than 3.1.4 are affected; all releases before this version lack the SSRF protection fix and are vulnerable.

Risk and Exploitability

The CVSS score of 7.6 classifies the flaw as high severity. The EPSS score is less than 1%, indicating a very low but nonzero exploitation probability. The vulnerability is not listed in the CISA KEV catalog. The likely attack vector is exploitation through crafted payloads sent to document loader nodes – any user or component capable of inserting such URLs can trigger the flaw. Because the flaw bypasses normal SSRF controls, internal network resources can be accessed directly from the server.

Generated by OpenCVE AI on September 20, 2026 at 16:36 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade Flowise to version 3.1.4 or later.
  • If an upgrade is not immediately possible, restrict user input so that arbitrary URLs cannot be supplied to Cheerio, Playwright, or Puppeteer document loaders, and consider disabling these nodes until the patch is applied.
  • Monitor outbound HTTP traffic from the Flowise server for unexpected requests to internal or cloud endpoints, and block or alert on suspicious activity.

Generated by OpenCVE AI on September 20, 2026 at 16:36 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 17 Sep 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 15 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Description Flowise versions before 3.1.4 contain a server-side request forgery vulnerability in Cheerio, Playwright, and Puppeteer document loader nodes that bypass SSRF protection. Attackers can provide arbitrary URLs to fetch cloud metadata, internal services, and private network resources with response content returned as document text.
Title Flowise before 3.1.4 Server-Side Request Forgery via document loaders
First Time appeared Flowiseai
Flowiseai flowise
Weaknesses CWE-918
CPEs cpe:2.3:a:flowiseai:flowise:*:*:*:*:*:*:*:*
Vendors & Products Flowiseai
Flowiseai flowise
References
Metrics cvssV3_1

{'score': 7.1, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:L'}

cvssV4_0

{'score': 7.6, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:H/VI:H/VA:L/SC:N/SI:N/SA:N'}


Subscriptions

Flowiseai Flowise
cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2026-09-17T19:28:50.908Z

Reserved: 2026-09-15T11:06:02.263Z

Link: CVE-2026-91938

cve-icon Vulnrichment

Updated: 2026-09-17T18:57:15.527Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-15T16:17:45.317

Modified: 2026-09-17T20:18:53.960

Link: CVE-2026-91938

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T16:45:07Z

Weaknesses
  • CWE-918

    Server-Side Request Forgery (SSRF)