Vulnerability GHSA-5xvg-pmgg-3mxr

Critical
CRITICAL RISK
CVSS Score: 9.5
Score Range: 9.0–10.0
Critical severity vulnerabilities (CVSS 9.0–10.0). These represent the highest impact issues.
2 months ago
August 04, 2026 at 07:29 PM UTC
Flowise: CSV Agent Prompt Injection Remote Code Execution Vulnerability
1.0.0 - 3.1.2
1.0.0 - 3.1.2

Summary

Flowise: CSV Agent Prompt Injection Remote Code Execution Vulnerability

Details

-- ABSTRACT -------------------------------------

Trend Micro's Zero Day Initiative has identified a vulnerability affecting the following products: Flowise - Flowise

-- VULNERABILITY DETAILS ------------------------

Timeline

Published
2 months ago
August 04, 2026 at 07:29 PM UTC
Fixed (3.1.3)
3 months ago
June 25, 2026 at 10:35 AM UTC
Fixed (3.1.3)
3 months ago
June 25, 2026 at 10:41 AM UTC
Last Modified
2 months ago
August 04, 2026 at 07:56 PM UTC