CVE-2026-67620
Last modified
CVE-2026-67620 is a high-severity vulnerability rated 7.7/10 on the CVSS scale. Flowise through 3.1.4 contains a server-side request forgery vulnerability in the SSRF guard implemented in httpSecurity.ts, where the DEFAULT_DENY_LIST omits the Oracle Cloud Infrastructure metadata endpoint 192.0.0.192 and the Alibaba Cloud metadata endpoint 100.100.100.200, allowing authenticated attackers to force the server to issue arbitrary GET requests to cloud instance metadata services. Attackers can send requests to the fetch-links API endpoint with a crafted URL parameter, bypassing deny-list validation including redirect-based bypasses, to reach instance metadata services and expose instance identity data and role credentials on Oracle Cloud Infrastructure or Alibaba Cloud deployments, with unauthenticated access possible when URL-fetching nodes exist in public chatflows.. EPSS estimates a 0.32% chance of exploitation in the next 30 days.
Description
Flowise through 3.1.4 contains a server-side request forgery vulnerability in the SSRF guard implemented in httpSecurity.ts, where the DEFAULT_DENY_LIST omits the Oracle Cloud Infrastructure metadata endpoint 192.0.0.192 and the Alibaba Cloud metadata endpoint 100.100.100.200, allowing authenticated attackers to force the server to issue arbitrary GET requests to cloud instance metadata services. Attackers can send requests to the fetch-links API endpoint with a crafted URL parameter, bypassing deny-list validation including redirect-based bypasses, to reach instance metadata services and expose instance identity data and role credentials on Oracle Cloud Infrastructure or Alibaba Cloud deployments, with unauthenticated access possible when URL-fetching nodes exist in public chatflows.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Flowiseai | Flowise | <= 3.1.4 |
References
- https://flowiseai.com/sunsetNot Applicable
- https://github.com/abdugafforov-bobur/CVE-2026-67620-pocExploit, Mitigation, Third Party Advisory
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-67620?
How severe is CVE-2026-67620?
How do I fix CVE-2026-67620?
How Strix Helps
- One Click Account Takeover in GranolaHow a notification link broke out of Electron and led to a one-click account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-67615openEQUELLA before 2026.1.0 contains an authenticated remote…8.8
- CVE-2026-67616Camaleon CMS through 2.9.2, fixed in commit 88ab703, contain…4.3
- CVE-2026-67617Microweber CMS through 2.0.20 contains a stored cross-site s…4.8
- CVE-2026-67618marimo before 0.23.15 contains a configuration injection vul…6.5
- CVE-2026-67619Rejected reason: This CVE ID has been rejected or withdrawn …
- CVE-2026-6762Spoofing issue in the DOM: Core & HTML component. This vulne…6.3
- CVE-2026-67621Flowise through 3.1.4 contains a missing authorization vulne…7.6
- CVE-2026-67622Flowise through 3.1.4 contains an insecure direct object ref…9.9
- CVE-2026-67623Mistral Vibe before 2.23.3 contains a remote code execution …8.8
- CVE-2026-67624Out-of-bounds read in SQL Server allows an authorized attack…6.5
- CVE-2026-67629Out-of-bounds read in SQL Server allows an authorized attack…6.5
- CVE-2026-6763Mitigation bypass in the File Handling component. This vulne…6.5
Are you affected by CVE-2026-67620?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
