CVE-2026-52098
CRITICAL
NVD
CVSS Score
9.8
Severity
CRITICAL
Published
Sep 10, 2026
Vendor
unknown
Description
An issue in Flowise 3.1.2 allows a remote attacker to execute arbitrary code via the /api/v1/prediction/<flowId> endpoint
An issue in Flowise 3.1.2 allows a remote attacker to execute arbitrary code via the /api/v1/prediction/<flowId> endpoint