Unsandboxed Remote Code Execution in Flowise by FlowiseAI
CVE-2025-71336
9.3CRITICAL
What is CVE-2025-71336?
The Flowise platform, up to version 3.0.6, is impacted by a serious flaw that allows unsandboxed remote code execution via its Custom MCP feature. The vulnerability arises from a lack of robust authentication and authorization mechanisms, making it possible for malicious actors to exploit the system. By sending a specially crafted JSON payload with a specific header to the vulnerable /api/v1/node-load-method/customMCP endpoint, attackers can execute arbitrary operating system commands. This security gap can lead to a full compromise of the platform's infrastructure, highlighting the urgent need for users to upgrade to secure versions and implement proper security measures.
Affected Version(s)
Flowise 0 < 3.0.6
Flowise 3.0.6
