Flowise has Remote Code Execution vulnerability
100Vexday Risk Score
Corrige ahora. Ella explotación observada por VulnCheck y tiene exploit funcional público.
ssvc Actcvss 10epss 90%
de la publicación al arma39 días
Publicada en NVD22 sept
1ª PoC+39d
metasploit13 sept
VulnCheck+195d
probabilidad de explotación
90%top 1% de las CVE
explotación observada
síVulnCheck
26 exploit(s) público(s)
Flowise is a drag & drop user interface to build a customized large language model flow. In version 3.0.5, Flowise is vulnerable to remote code execution. The CustomMCP node allows users to input configuration settings for connecting to an external MCP server. This node parses the user-provided mcpServerConfig string to build the MCP server configuration. However, during this process, it executes JavaScript code without any security validation. Specifically, inside the convertToValidJSONString function, user input is directly passed to the Function() constructor, which evaluates and executes the input as JavaScript code. Since this runs with full Node.js runtime privileges, it can access dangerous modules such as child_process and fs. This issue has been patched in version 3.0.6.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Productos afectados
FlowiseAI · FlowisePoCs públicas encontradas — 26
exploitdbwww.exploit-db.com/exploits/52440no verificadogithubgithub.com/im-nymii/CVE-2025-59528★ 1githubgithub.com/UsifAraby/CVE-2025-59528-POC★ 1githubgithub.com/r3nsi15/Flowise-RCE-CVE-2025-59528★ 1githubgithub.com/mananispiwpiw/CVE-2025-59528-PoC★ 1githubgithub.com/maradonam18/-CVE-2025-59528-PoC★ 1githubgithub.com/vanhari/CVE-2025-59528★ 1githubgithub.com/Moon-Harvest/CVE-2025-59528★ 0githubgithub.com/corey-farley/CVE-2025-59528-Flowise-RCE★ 0vulncheckvulncheck.com/xdb/3f5adc61e864no verificadovulncheckvulncheck.com/xdb/263b32bf8c69no verificadovulncheckvulncheck.com/xdb/677b1c3dfb43no verificadovulncheckvulncheck.com/xdb/1cbf1594891bno verificadovulncheckvulncheck.com/xdb/2c30213b42e0no verificadovulncheckvulncheck.com/xdb/563083701a16no verificadovulncheckvulncheck.com/xdb/56a41c9860e4no verificadovulncheckvulncheck.com/xdb/091dd29241cdno verificadovulncheckvulncheck.com/xdb/0341f06a864fno verificadovulncheckvulncheck.com/xdb/2a1a4825b0c4no verificadovulncheckvulncheck.com/xdb/783ea41601fano verificadovulncheckvulncheck.com/xdb/ff5acae38c2ano verificadovulncheckvulncheck.com/xdb/c66d7108f5e1no verificadovulncheckvulncheck.com/xdb/808bec20af16no verificadovulncheckvulncheck.com/xdb/4ea435a91d53no verificadovulncheckvulncheck.com/xdb/584bb236151eno verificadovulncheckvulncheck.com/xdb/407a5532a27cno verificado⚠ Recursos públicos, para evaluar la exposición de sistemas que controlas o estás autorizado a probar. Prueba solo con autorización.
Referencias
https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/components/nodes/tools/MCP/CustomMCP/CustomMCP.ts#L132https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/components/nodes/tools/MCP/CustomMCP/CustomMCP.ts#L220https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/components/nodes/tools/MCP/CustomMCP/CustomMCP.ts#L262-L270https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/server/src/controllers/nodes/index.ts#L57-L78https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/server/src/routes/node-load-methods/index.ts#L5https://github.com/FlowiseAI/Flowise/blob/5930f1119c655bcf8d2200ae827a1f5b9fec81d0/packages/server/src/services/nodes/index.ts#L91-L94https://github.com/FlowiseAI/Flowise/releases/tag/flowise%403.0.6https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-3gcm-f6qx-ff7p