What is CVE-2026-70472?
In Flowise versions prior to 3.1.3, the 'openai-assistants-vector-store' endpoints accept a client-controlled credential parameter without verifying if the credential belongs to the caller's workspace. This allows an attacker to load arbitrary credentials by ID. Upgrading to version 3.1.3 is strongly recommended.
Azərbaycanca: Flowise LLM interfeysinin 3.1.3-dən əvvəlki versiyalarında 'openai-assistants-vector-store' endpoint-lərində kritik zəiflik aşkarlanıb. Təcavüzkar, müştəri tərəfindən idarə olunan credential parametri vasitəsilə başqa workspace-ə məxsus etimadnamələri yükləyə bilər. Dərhal 3.1.3 və ya daha yuxarı versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-862
FAQ2
Which versions of Flowise are affected by CVE-2026-70472?
This critical vulnerability affects all versions of the Flowise LLM interface prior to 3.1.3.
How can an attacker exploit CVE-2026-70472?
An attacker can exploit the 'openai-assistants-vector-store' endpoints by using the client-controlled credential parameter to load arbitrary credentials by ID that do not belong to their own workspace.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.