High severity7.6NVD Advisory· Published Apr 29, 2024· Updated Jun 17, 2026
CVE-2024-31621
CVE-2024-31621
Description
An issue in FlowiseAI Inc Flowise v.1.6.2 and before allows a remote attacker to execute arbitrary code via a crafted script to the api/v1 component.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
flowisenpm | < 1.8.1 | 1.8.1 |
Affected products
3- FlowiseAI Inc/Flowisedescription
Patches
Vulnerability mechanics
References
7- www.exploit-db.com/exploits/52001nvdExploitThird Party AdvisoryVDB EntryWEB
- github.com/advisories/GHSA-6wp6-22x5-rr3wghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2024-31621ghsaADVISORY
- flowiseai.comghsaWEB
- flowiseai.comnvdProduct
- github.com/FlowiseAI/Flowise/blob/flowise%401.6.5/packages/server/src/index.tsghsaWEB
- github.com/FlowiseAI/Flowise/commit/e32b64344544312bf38b3e1fefe7b26c1776a426ghsaWEB
News mentions
0No linked articles in our index yet.