CVE-2026-73487
Flowise before 3.1.3 contains a regex-based Python code validator bypass in CSV and Airtable Agent nodes that allows unauthenticated attackers to inject malicious code via prompt injection. Attackers can exploit unblocked pandas functions like pd.read_json() to exfiltrate datasets, perform SSRF against internal services, or achieve code execution through the unauthenticated prediction API.
Package Versions Affected
Automatically patch vulnerabilities without upgrading
CVSS Version



Related Resources
References
https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/73xxx/CVE-2026-73487.json, https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-w7x8-q2gp-5cgg, https://nvd.nist.gov/vuln/detail/CVE-2026-73487, https://www.vulncheck.com/advisories/flowise-before-prompt-injection-rce-via-csv-agent