← Späť na vyhľadávanie CVE

CVE-2026-56274

Flowise

Popis

Flowise before 3.1.2 contains multiple OS command injection vulnerabilities in the Custom MCP Server feature due to incomplete command-flag validation and a regex bypass in local file access restrictions. An attacker with a Flowise account of any role, or API access with view/update permissions for chatflows, can configure a malicious MCP server to bypass the validateCommandFlags blocklist (for example, -docker build- is not blocked, and -npx --yes- is not blocked while only --y- is) and the validateArgsForLocalFileAccess checks, resulting in execution of arbitrary commands on the Flowise host.

CVSS 9.9EPSS 3.273%Riziko 1.28
Zobraziť zdroj
Zverejnené
2026-06-23 13:16:45
Dotknuté verzie
<3.1.2
Typ
Kritický softvér
Vektor
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H