Breaking the AI Sandbox: Critical Flowise Flaw (CVE-2026-46442) Grants Host-Level RCE
ID: f6716ab0-d3cf-5852-807a-d1eea38f1696
STIX ID: report--f6716ab0-d3cf-5852-807a-d1eea38f1696
Feed Name: securityonline.info
A critical RCE (CVE-2026-46442, CVSS 9.4) in Flowise permits authenticated low-privilege users or API keys to access an unprotected custom-JS execution endpoint and escape the NodeVM sandbox to run arbitrary host commands. The flaw affects self-hosted and corporate Flowise deployments running version 3.1.1 or earlier; maintainers released version 3.1.2 to fix the issue. Immediate remediation actions recommended are patching to 3.1.2, enforcing route permission checks, and configuring sandboxing to fail-closed when an external sandbox API key is absent.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
