Top open source AI platform Flowise hit by maximum-level security issue



  • Flowise AI platform carried CVSS-10 arbitrary code flaw
  • Vulnerability in CustomMCP node exploited in the wild
  • Up to 15,000 exposed instances urged to update immediately

Flowise, a popular open source platform for building custom LLM apps and AI agents, carried a maximum-severity vulnerability which allowed threat actors to run arbitrary code and thus, potentially, take over entire systems.

Flowise is a low‑code platform which allows users to visually build AI workflows, chatbots and LLM‑powered applications by dragging and dropping components instead of writing code. Its GitHub project has more than 40,000 stars, and it is reported to power millions of chats and workflows across developers and companies.


https://cdn.mos.cms.futurecdn.net/BWBeAxrLrBFHHdNreUhfgW-970-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

Leave a reply

Please enter your comment!
Please enter your name here

spot_imgspot_img