CVE-2026-71962 | FlowiseAI Flowise up to 3.1.4 download chatflowId/chatId/fileName improper authorization (EUVD-2026-55702)
A vulnerability categorized as problematic has been discovered in FlowiseAI Flowise up to 3.1.4. Affected by this issue is some unknown functionality of the file /api/v1/openai-assistants-file/download. Executing a manipulation of the argument chatflowId/chatId/fileName can lead to improper authorization.
This vulnerability is registered as CVE-2026-71962. It is possible to launch the attack remotely. No exploit is available.VulDB Recent EntriesRead More