Eval Injection in Flowise - #VU140074
Published: July 30, 2026
Vulnerability details
The vulnerability allows a remote user to execute arbitrary code.
The vulnerability exists due to improper neutralization of directives in dynamically evaluated code in the vm2-based JavaScript sandbox used by the custom function agent flow node and custom tool when executing user-supplied JavaScript. A remote user can submit crafted JavaScript that escapes the sandbox to execute arbitrary code.
Exploitation requires authentication and affects instances using the default vm2 sandbox.