CVE-2026-56273

MEDIUM

Flowise - Path Traversal in Vector Store basePath Parameter

Title source: cna
STIX 2.1

Description

Flowise before 3.1.0 contains a path traversal vulnerability in Faiss and SimpleStore vector store implementations that accept unsanitized basePath parameters from authenticated users. Attackers with valid API tokens can write vector store data to arbitrary filesystem locations, potentially enabling code execution or data exfiltration.

References (2)

Core 2
Core References
Vendor Advisory vendor-advisory
GitHub Security Advisory (GHSA-w6v6-49gh-mc9w)
https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-w6v6-49gh-mc9w
Third Party Advisory third-party-advisory
VulnCheck Advisory: Flowise - Path Traversal in Vector Store basePath Parameter
https://www.vulncheck.com/advisories/flowise-path-traversal-in-vector-store-basepath-parameter

Scores

CVSS v3 6.5
EPSS 0.0033
EPSS Percentile 25.5%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact partial

Details

CWE
CWE-22
Status published
Products (2)
Flowise/Flowise < 3.1.0
Flowise/Flowise 3.1.0
Published Jul 08, 2026
Tracked Since Jul 08, 2026