Flowise Mass Assignment Vulnerability in Evaluator Management Allows Cross-Workspace Takeover

Vulnerability

A mass assignment vulnerability has been identified in Flowise, a user interface for building customized large language model flows. This issue, present in versions through 3.1.1, allows for cross-workspace evaluator takeover by improperly handling workspace-related data during evaluator creation and updates. The vulnerability arises because the Evaluator controller does not validate which fields can be overwritten with client-controlled data, enabling authenticated users to manipulate evaluator ownership and access across workspaces.

Impact

Exploitation of this vulnerability allows authenticated users to take over evaluators from other workspaces, disrupting workspace boundaries and access controls. This could lead to unauthorized visibility and modification of evaluators and their associated scoring rubrics.

Reproduction

To reproduce this vulnerability, an authenticated user must first create or identify an evaluator in their workspace. They can then send a request to update the evaluator, including a workspace ID from a different workspace. The request will be processed as if it originated from the user's current workspace, but will transfer the evaluator to the other workspace, effectively taking it over.

Remediation

Users can update to Flowise version 3.1.2, where this vulnerability has been patched.

Added: Jun 8, 2026, 4:36 PM
Updated: Jun 8, 2026, 4:36 PM

Vulnerability Rating

Custom Algorithm
spread
0.3
impact
1.3
exploitability
6.2
remediation
7.7
relevance
9.4
threat
6.4
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.