ZDI-26-634: Flowise CSV Agent Prompt Injection Remote Code Execution Vulnerability
Published Sep 9, 2026
·Updated
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Flowise. Authentication is not required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 9.8. The following CVEs are assigned: CVE-2026-70477.
Affected Software
1 affected component
Flowise
Event History
Sep 9, 2026
Advisory Published
via ZDI·05:00 AM
Data Sourced
via ZDI·05:00 AM
Description
Frequently Asked Questions
1
Who can exploit this vulnerability?
Remote attackers can exploit it without authentication. Any reachable affected Flowise installation should be treated as exposed based on the available information.
2
What is the potential impact of successful exploitation?
Successful exploitation allows an attacker to execute arbitrary code on the affected Flowise installation.
3
Which identifier should be used to track this issue?
The assigned CVE identifier is CVE-2026-70477. The advisory identifier is ZDI-26-634.