<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T20:54:57.751016+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-348586</id>
    <title>EUVD-2026-348586</title>
    <updated>2026-10-02T20:54:57.802708+00:00</updated>
    <content>EUVD-2026-348586</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-348586"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-70474</id>
    <title>fkie_cve-2026-70474</title>
    <updated>2026-10-02T20:54:57.802759+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Flowise is a drag-and-drop user interface for building customized large language model (LLM) flows. Prior to 3.1.3, Flowise has three OAuth2 credential endpoints that look up credentials by id alone with no workspaceId filter. The authorize, callback, and refresh handlers query the Credential table by id only; callback and refresh are whitelisted from authentication. This allows any authenticated user to initiate OAuth2 flows against credentials belonging to other workspaces, allows an unauthenticated attacker to forge OAuth2 callbacks to overwrite tokens in any credential, and allows an unauthenticated attacker to refresh tokens for any credential. The affected routes include /api/v1/oauth2-credential/authorize/&lt;VICTIM_CREDENTIAL_UUID&gt;, /api/v1/oauth2-credential/callback?code=ATTACKER_AUTH_CODE&amp;state=&lt;VICTIM_CREDENTIAL_UUID&gt;, and /api/v1/oauth2-credential/refresh/&lt;VICTIM_CREDENTIAL_UUID&gt;. This issue is fixed in version 3.1.3.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-70474"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-wch5-xp77-fxg4</id>
    <title>GHSA-wch5-xp77-fxg4 — Flowise: Cross-Workspace OAuth2 Credential Metadata Leak</title>
    <updated>2026-10-02T20:54:57.802830+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> npm: flowise</p>
<p>## Summary</p>
<p>Three OAuth2 credential endpoints look up credentials by `id` alone with no `workspaceId` filter. Two of these endpoints (`callback`, `refresh`) are whitelisted from all authentication. This allows:</p>
<p>1. **Cross-workspace credential access** — Any authenticated user can initiate OAuth2 flows against credentials belonging to other workspaces.
2. **Unauthenticated token injection** — An unauthenticated attacker can forge OAuth2 callbacks to overwrite tokens in any credential.
3. **Unauthenticated token refresh** — An unauthenticated attacker can refresh tokens for any credential.</p>
<p>---</p>
<p>## Root Cause</p>
<p>### Vulnerable code: no workspace scoping</p>
<p>All three OAuth2 handlers query the `Credential` table by `id` only:</p>
<p>**`packages/server/src/routes/oauth2/index.ts:80-82`** (authorize)
```typescript
const credential = await credentialRepository.findOneBy({
    id: credentialId
    // Missing: workspaceId filter
})
```</p>
<p>**`packages/server/src/routes/oauth2/index.ts:183-185`** (callback)
```typescript
const credential = await credentialRepository.findOneBy({
    id: state as string
    // Missing: workspaceId filter
})
```</p>
<p>**`packages/server/src/routes/oauth2/index.ts:314-316`** (refresh)
```typescript
const credential = await credentialRepository.findOneBy({
    id: credentialId
    // Missing: workspaceId filter
})
```</p>
<p>### Correct pattern (same codebase)</p>
<p>The standard credential service correctly enforces workspace isolation:</p>
<p>**`packages/server/src/services/credentials/in…</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-wch5-xp77-fxg4"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2589</id>
    <title>WID-SEC-W-2026-2589 — Flowise: Mehrere Schwachstellen</title>
    <updated>2026-10-02T20:54:57.803124+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein Angreifer kann mehrere Schwachstellen in Flowise ausnutzen, um beliebigen Code auszuführen – sogar mit Root-Rechten –, erweiterte Privilegien zu erlangen, Sicherheitsmaßnahmen zu umgehen, Sitzungen zu kapern sowie Daten offenzulegen oder zu manipulieren.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2589"/>
  </entry>
</feed>
