ZDI-26-364: FlowiseAI Flowise CSV Agent Prompt Injection Remote Code Execution Vulnerability
Published Jun 24, 2026
·Updated
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Flowise. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 9.8. The following CVEs are assigned: CVE-2026-41264.
Affected Software
1 affected component
FlowiseAI Flowise CSV Agent
Event History
Jun 24, 2026
Advisory Published
via ZDI·05:00 AM
Data Sourced
via ZDI·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of ZDI-26-364?
ZDI-26-364 has a CVSS rating of 9.8, indicating a critical severity level.
2
What type of vulnerability is ZDI-26-364?
ZDI-26-364 is a prompt injection remote code execution vulnerability.
3
How do I fix ZDI-26-364?
To mitigate ZDI-26-364, update to the latest version of FlowiseAI Flowise CSV Agent as soon as possible.
4
Who can exploit ZDI-26-364?
ZDI-26-364 can be exploited by remote attackers without authentication.
5
What are the potential impacts of ZDI-26-364?
The potential impacts of ZDI-26-364 include the execution of arbitrary code on affected installations.