{"advisories":[{"id":"EUVD-2025-24803","source":"euvd","title":"Flowise vulnerable to RCE via Dynamic function constructor injection","url":"https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-24803"},{"id":"GHSA-q4xx-mc3q-23x8","source":"ghsa","title":"Flowise JS injection remote code execution","url":"https://github.com/advisories/GHSA-q4xx-mc3q-23x8"},{"id":"GHSA-hmgh-466j-fx4c","source":"ghsa","title":"Flowise vulnerable to RCE via Dynamic function constructor injection","url":"https://github.com/advisories/GHSA-hmgh-466j-fx4c"}],"cve":"CVE-2025-55346","enrichment":{"created":"2025-08-16T21:41:19.466908+00:00","updated":"2025-08-16T21:41:19.466986+00:00","vendors":["flowiseai","flowiseai$PRODUCT$flowise"]},"epss":{"score":0.2081},"mitre":{"cpes":[],"created":"2025-08-14T09:49:52.293000+00:00","description":"User-controlled input flows to an unsafe implementation of a dynamic Function constructor, allowing network attackers to run arbitrary unsandboxed JS code in the context of the host, by sending a simple POST request.","metrics":{"cvssV2_0":{},"cvssV3_0":{},"cvssV3_1":{"score":9.8,"vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"},"cvssV4_0":{}},"mitre_repo_path":"cves/2025/55xxx/CVE-2025-55346.json","references":["https://research.jfrog.com/vulnerabilities/flowise-js-injection-remote-code-exection-jfsa-2025-001379925/"],"title":"Unintended dynamic code execution leads to remote code execution by network attackers","updated":"2025-08-14T15:44:20.060000+00:00","vendors":[],"weaknesses":["CWE-94"]},"nvd":{"cpes":[],"created":"2025-08-14T10:15:26.553000+00:00","description":"User-controlled input flows to an unsafe implementation of a dynamic Function constructor, allowing network attackers to run arbitrary unsandboxed JS code in the context of the host, by sending a simple POST request.","metrics":{"cvssV2_0":{},"cvssV3_0":{},"cvssV3_1":{"score":9.8,"vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"},"cvssV4_0":{}},"nvd_repo_path":"2025/CVE-2025-55346.json","references":["https://research.jfrog.com/vulnerabilities/flowise-js-injection-remote-code-exection-jfsa-2025-001379925/"],"title":null,"updated":"2026-06-17T09:41:42.307000+00:00","vendors":[],"weaknesses":["CWE-94"]},"opencve":{"changes":[{"created":"2025-08-14T10:00:00+00:00","data":[{"details":{"new":"User-controlled input flows to an unsafe implementation of a dynamic Function constructor, allowing network attackers to run arbitrary unsandboxed JS code in the context of the host, by sending a simple POST request.","old":null},"type":"description"},{"details":{"new":"Unintended dynamic code execution leads to remote code execution by network attackers","old":null},"type":"title"},{"details":{"added":["CWE-94"],"removed":[]},"type":"weaknesses"},{"details":{"added":["https://research.jfrog.com/vulnerabilities/flowise-js-injection-remote-code-exection-jfsa-2025-001379925/"],"removed":[]},"type":"references"},{"details":{"added":{"cvssV3_1":{"score":9.8,"vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}},"removed":{},"updated":{}},"type":"metrics"}],"id":"9baf8206-01fc-4a7b-ab3b-b94b9e52c66d"},{"created":"2025-08-14T16:15:00+00:00","data":[{"details":{"added":{"ssvc":{"options":{"Automatable":"yes","Exploitation":"poc","Technical Impact":"total"},"version":"2.0.3"}},"removed":{},"updated":{}},"type":"metrics"}],"id":"a31801aa-ca20-48c8-ae25-6e6bbb348b23"},{"created":"2025-08-16T21:45:00+00:00","data":[{"details":["flowiseai","flowiseai$PRODUCT$flowise"],"type":"first_time"},{"details":{"added":["flowiseai","flowiseai$PRODUCT$flowise"],"removed":[]},"type":"vendors"}],"id":"a94343ee-7b10-4456-9b0a-c43d3d90a393"}],"cpes":{"data":[],"providers":[]},"created":{"data":"2025-08-14T09:49:52.293000+00:00","provider":"mitre"},"description":{"data":"User-controlled input flows to an unsafe implementation of a dynamic Function constructor, allowing network attackers to run arbitrary unsandboxed JS code in the context of the host, by sending a simple POST request.","provider":"mitre"},"metrics":{"cvssV2_0":{"data":{},"provider":null},"cvssV3_0":{"data":{},"provider":null},"cvssV3_1":{"data":{"score":9.8,"vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"},"provider":"mitre"},"cvssV4_0":{"data":{},"provider":null},"epss":{"data":{"score":0.2081},"provider":"first"},"kev":{"data":{},"provider":null},"ssvc":{"data":{"options":{"Automatable":"yes","Exploitation":"poc","Technical Impact":"total"},"version":"2.0.3"},"provider":"vulnrichment"},"threat_severity":{"data":null,"provider":null}},"references":{"data":["https://research.jfrog.com/vulnerabilities/flowise-js-injection-remote-code-exection-jfsa-2025-001379925/"],"providers":["mitre","nvd","vulnrichment"]},"title":{"data":"Unintended dynamic code execution leads to remote code execution by network attackers","provider":"mitre"},"updated":{"data":"2026-04-15T00:35:42.020000+00:00","provider":"nvd"},"vendors":{"data":["flowiseai","flowiseai$PRODUCT$flowise"],"providers":["enrichment"]},"weaknesses":{"data":["CWE-94"],"providers":["mitre","nvd"]}},"vulnrichment":{"cpes":[],"created":"2025-08-14T09:49:52.293000+00:00","description":"User-controlled input flows to an unsafe implementation of a dynamic Function constructor, allowing network attackers to run arbitrary unsandboxed JS code in the context of the host, by sending a simple POST request.","metrics":{"cvssV2_0":{},"cvssV3_0":{},"cvssV3_1":{},"cvssV4_0":{},"kev":{},"ssvc":{"options":{"Automatable":"yes","Exploitation":"poc","Technical Impact":"total"},"version":"2.0.3"}},"references":["https://research.jfrog.com/vulnerabilities/flowise-js-injection-remote-code-exection-jfsa-2025-001379925/"],"title":"Unintended dynamic code execution leads to remote code execution by network attackers","updated":"2025-08-14T15:44:13.309000+00:00","vendors":[],"vulnrichment_repo_path":"2025/55xxx/CVE-2025-55346.json","weaknesses":[]}}