Skip to content

MCPA-2026-0049

criticalrce-vectors

Flowise CSV Agent prompt-injection remote code execution (CVE-2026-70477)

Flowise 3.1.2 and earlier allow prompt-injection content processed by the CSV Agent to reach the Python execution path and run arbitrary code on the host — a toxic flow from untrusted data to code execution. Fixed in 3.1.3.

Affected packages

EcosystemPackageAffected versions
npmflowise
>= 0, < 3.1.3
npmflowise-components
>= 0, < 3.1.3

Identifiers

CVE-2026-70477GHSA-5xvg-pmgg-3mxrCWE-94

References

Timeline

  • Published: 2026-08-04

← All advisories