Input validation error in Flowise - #VU140064
Published: July 30, 2026
Vulnerability details
The vulnerability allows a remote attacker to disclose sensitive information and access internal network resources.
The vulnerability exists due to improper input validation in validatePythonCodeForDataFrame() used by the CSV Agent and Airtable Agent nodes when processing prompt-injection-controlled Python code from the prediction API. A remote attacker can send a specially crafted prediction request to disclose sensitive information and access internal network resources.
The issue can be reached through the unauthenticated prediction endpoint and requires a chatflow that includes a CSV Agent or Airtable Agent with loaded data.