<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>Cpe:2.3:a:flowise:flowise:*:*:*:*:*:*:*:* - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/cpes/cpe2.3aflowiseflowise/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Sat, 26 Sep 2026 15:00:42 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/cpes/cpe2.3aflowiseflowise/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>Authorization Bypass in Flowise Chat Message Endpoints</title><link>https://feed.craftedsignal.io/briefs/2026-09-flowise-rbac-vuln/</link><pubDate>Sat, 26 Sep 2026 15:00:42 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-09-flowise-rbac-vuln/</guid><description>Flowise versions up to 3.1.4 are vulnerable to unauthorized access due to missing route-level RBAC checks, allowing low-privileged API keys to read and delete sensitive chat history.</description><content:encoded><![CDATA[<p>Flowise versions through 3.1.4 contain a critical authorization vulnerability originating from missing route-level Role-Based Access Control (RBAC) checks on chat message endpoints. This vulnerability allows attackers in possession of low-privileged API keys to bypass intended permission restrictions. By targeting specific GET and DELETE API routes, an unauthorized actor can access chat histories, internal prompts, and model responses, or perform destructive actions by deleting message logs without holding the necessary flow permissions. This defect significantly impacts the confidentiality and integrity of sensitive chat data managed within the Flowise environment. Organizations deploying Flowise should treat this as a high-priority security concern.</p>
<h2 id="impact">Impact</h2>
<p>Successful exploitation allows low-privileged users to bypass access control constraints, leading to the unauthorized exfiltration of sensitive AI prompts and customer chat history. Furthermore, the ability to issue DELETE requests to the message endpoints permits attackers to disrupt or purge chat logs, which may impact audit trails and service availability.</p>
<h2 id="recommendation">Recommendation</h2>
<ul>
<li>Immediately restrict access to the Flowise API to trusted internal networks while awaiting official patches.</li>
<li>Audit application logs for abnormal patterns of GET or DELETE requests to chat message endpoints originating from known low-privileged service accounts or API keys.</li>
<li>Upgrade to the latest version of Flowise as soon as a security update is released by the maintainer.</li>
</ul>
]]></content:encoded><category domain="severity">high</category><category domain="type">advisory</category><category>authorization-bypass</category><category>api-security</category><category>rbac</category><category>authentication-bypass</category><category>identity-management</category><category>sso</category><category>idor</category><category>data-exfiltration</category></item></channel></rss>