THREATOPS
THREAT OPSThreat News › [GHSA] GHSA-fm2f-4339-4p2f (high) — Flowise: Missing Authorization on Execution Update Endpoint

[GHSA] GHSA-fm2f-4339-4p2f (high) — Flowise: Missing Authorization on Execution Update Endpoint

highgithub_advisoriesPublished 2026-08-04

GHSA-fm2f-4339-4p2f Severity: high CVE: CVE-2026-70475

Flowise: Missing Authorization on Execution Update Endpoint

# Flowise Security Audit Report **Date**: 2026-03-17 **Researcher**: Dimpal Jadhav (jadhavdimpy@gmail.com) **GitHub**: https://github.com/Dimpyj1604 **Target**: FlowiseAI/Flowise (latest main branch) **Version**: flowise-components@3.1.0

### FINDING 1: Missing Authorization on Exec

Indicators of compromise

Original source: https://github.com/advisories/GHSA-fm2f-4339-4p2f