Junglewise Threat Intelligence

FlowiseAI authenticated RCE via NodeVM sandbox escape in custom function

Severity: critical · CVSS 9.9 · Published 2026-05-14

Technologies: flowise (npm). Vendors: npm.

Executive brief

FlowiseAI is vulnerable to an authenticated remote code execution (RCE) flaw due to missing authorization checks and a sandbox escape in the custom JS function node.

Affected products

  • npm flowise

Related threats