CVE-2026-91938: Flowise before 3.1.4 Server-Side Request Forgery via document loaders
Flowise versions before 3.1.4 contain a server-side request forgery vulnerability in Cheerio, Playwright, and Puppeteer document loader nodes that bypass SSRF protection. Attackers can provide arbitrary URLs to fetch cloud metadata, internal services, and private network resources with response content returned as document text.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Flowiseto a version that resolves this vulnerability.Fixed in 3.1.4
Event History
Frequently Asked Questions
Which deployments are exposed?
Flowise versions before 3.1.4 are affected when Cheerio, Playwright, or Puppeteer document loader nodes can be supplied with URLs. The issue can expose cloud metadata endpoints, internal services, and private-network resources to requests originating from the Flowise server.
What does an attacker need to exploit this issue?
An attacker needs low-privileged access and the ability to provide a URL to an affected document loader node. Exploitation does not require user interaction, but the attack complexity is rated high.
What can an attacker obtain or do through the vulnerable loaders?
The attacker can cause the server to fetch arbitrary URLs, including cloud metadata and internal resources. Returned response content is made available as document text, which can disclose sensitive data; the reported impact also includes high integrity impact and low availability impact.
What version fixes the vulnerability?
Upgrade Flowise to version 3.1.4 or later. The affected range is versions before 3.1.4.