Skip to content

MCPA-2026-0025

criticalrce-vectors

Flowise sandbox escape to remote code execution (CVE-2026-69253)

Flowise 3.1.2 and earlier ship a JavaScript sandbox (FlowiseAI/nodevm) that can be escaped by authenticated users supplying custom function/tool code, executing arbitrary code on the host (reported by elttam). Affects the flowise and flowise-components npm packages. Fixed in 3.1.3.

Affected packages

EcosystemPackageAffected versions
npmflowise
>= 0, < 3.1.3
npmflowise-components
>= 0, < 3.1.3

Identifiers

CVE-2026-69253GHSA-wg86-r78f-74mpCWE-94

References

Timeline

  • Published: 2026-08-04

← All advisories