Incorrect authorization in Flowise - CVE-2026-70472
Published: July 30, 2026
Vulnerability details
The vulnerability allows a remote user to read, modify, or delete victim vector stores and files, and cause unauthorized use of another workspace's OpenAI key.
The vulnerability exists due to improper authorization in the /api/v1/openai-assistants-vector-store endpoint when processing a client-supplied credential identifier. A remote user can send a crafted request with another workspace's credential ID to read, modify, or delete victim vector stores and files, and cause unauthorized use of another workspace's OpenAI key.
Exploitation requires assistants-related permissions and knowledge of a credential ID from another workspace.