<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 21:44:05 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-292831</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-292831</link>
      <description>EUVD-2026-292831</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-292831</guid>
    </item>
    <item>
      <title>fkie_cve-2026-41271</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-41271</link>
      <description>&lt;p&gt;Flowise is a drag &amp;amp; drop user interface to build a customized large language model flow. Prior to 3.1.0, a Server-Side Request Forgery (SSRF) vulnerability exists in FlowiseAI&amp;#39;s POST/GET API Chain components that allows unauthenticated attackers to force the server to make arbitrary HTTP requests to internal and external systems. By injecting malicious prompt templates, attackers can bypass the intended API documentation constraints and redirect requests to sensitive internal services, potentially leading to internal network reconnaissance and data exfiltration. This vulnerability is fixed in 3.1.0.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Flowise is a drag &amp;amp; drop user interface to build a customized large language model flow. Prior to 3.1.0, a Server-Side Request Forgery (SSRF) vulnerability exists in FlowiseAI&amp;#39;s POST/GET API Chain components that allows unauthenticated attackers to force the server to make arbitrary HTTP requests to internal and external systems. By injecting malicious prompt templates, attackers can bypass the intended API documentation constraints and redirect requests to sensitive internal services, potentially leading to internal network reconnaissance and data exfiltration. This vulnerability is fixed in 3.1.0.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-41271</guid>
    </item>
    <item>
      <title>GHSA-6r77-hqx7-7vw8 — Flowise:  APIChain Prompt Injection SSRF in GET/POST API Chains</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-6r77-hqx7-7vw8</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: flowise, npm: flowise-components&lt;/p&gt;
&lt;p&gt;### Summary
A Server-Side Request Forgery (SSRF) vulnerability exists in FlowiseAI&amp;#39;s POST/GET API Chain components that allows unauthenticated attackers to force the server to make arbitrary HTTP requests to internal and external systems. By injecting malicious prompt templates, attackers can bypass the intended API documentation constraints and redirect requests to sensitive internal services, potentially leading to internal network reconnaissance and data exfiltration.&lt;/p&gt;
&lt;p&gt;### Details
The vulnerability is located in FlowiseAI&amp;#39;s API Chain implementation where user-controlled input is used to dynamically generate URLs and request parameters without proper validation. The attack works as follows:&lt;/p&gt;
&lt;p&gt;1. Dynamic API Generation: Flowise&amp;#39;s POST/GET API chains use LLM-generated prompts based on user queries and API documentation to construct HTTP requests
2. Unvalidated URL Construction: The system extracts URL and data parameters directly from LLM responses without validating against the intended API documentation
3. SSRF Exploitation: Attackers can inject custom API documentation prompts that override the legitimate BASE URL, directing requests to arbitrary internal or external endpoints&lt;/p&gt;
&lt;p&gt;The vulnerable code in `packages/components/nodes/chains/ApiChain/postCore.ts` processes user input without validation:
```
const api_url_body = await this.apiRequestChain.predict({ question, api_docs: this.apiDocs }, runManager?.getChild())
const { url, data } = JSON.parse(api_url_body)&lt;/p&gt;
&lt;p&gt;const res…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; npm: flowise, npm: flowise-components&lt;/p&gt;
&lt;p&gt;### Summary
A Server-Side Request Forgery (SSRF) vulnerability exists in FlowiseAI&amp;#39;s POST/GET API Chain components that allows unauthenticated attackers to force the server to make arbitrary HTTP requests to internal and external systems. By injecting malicious prompt templates, attackers can bypass the intended API documentation constraints and redirect requests to sensitive internal services, potentially leading to internal network reconnaissance and data exfiltration.&lt;/p&gt;
&lt;p&gt;### Details
The vulnerability is located in FlowiseAI&amp;#39;s API Chain implementation where user-controlled input is used to dynamically generate URLs and request parameters without proper validation. The attack works as follows:&lt;/p&gt;
&lt;p&gt;1. Dynamic API Generation: Flowise&amp;#39;s POST/GET API chains use LLM-generated prompts based on user queries and API documentation to construct HTTP requests
2. Unvalidated URL Construction: The system extracts URL and data parameters directly from LLM responses without validating against the intended API documentation
3. SSRF Exploitation: Attackers can inject custom API documentation prompts that override the legitimate BASE URL, directing requests to arbitrary internal or external endpoints&lt;/p&gt;
&lt;p&gt;The vulnerable code in `packages/components/nodes/chains/ApiChain/postCore.ts` processes user input without validation:
```
const api_url_body = await this.apiRequestChain.predict({ question, api_docs: this.apiDocs }, runManager?.getChild())
const { url, data } = JSON.parse(api_url_body)&lt;/p&gt;
&lt;p&gt;const res…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-6r77-hqx7-7vw8</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-1145 — Flowise: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1145</link>
      <description>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Flowise ausnutzen, um beliebigen Programmcode auszuführen, um Sicherheitsvorkehrungen zu umgehen, um Informationen offenzulegen, und um Dateien zu manipulieren.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein Angreifer kann mehrere Schwachstellen in Flowise ausnutzen, um beliebigen Programmcode auszuführen, um Sicherheitsvorkehrungen zu umgehen, um Informationen offenzulegen, und um Dateien zu manipulieren.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-1145</guid>
    </item>
  </channel>
</rss>
