Code Injection in Flowise - CVE-2026-41137
Published: May 4, 2026
Flowise
Detailed vulnerability description
The vulnerability allows a remote user to execute arbitrary code.
The vulnerability exists due to improper control of code generation in CSVAgent when processing a user-supplied custom Pandas CSV read code value. A remote user can send a specially crafted request that defines a malicious chatflow and triggers its execution to execute arbitrary code.
If instance credentials are not configured, authentication can be bypassed by supplying the x-request-from: internal header.