OCTOBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-100608

HIGH · CVSS 8.3 EPSS 0.27% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-26 · Last synced 2026-10-09

CyberRota Analysis

AI-Generated

The Flowise application version 3.1.4 is vulnerable due to inadequate authorization enforcement on the BullMQ admin dashboard, allowing any authenticated user to access sensitive data and perform administrative actions across all tenants. This flaw can lead to exposure of confidential information, including credentials and custom code, and enables unauthorized manipulation of queues and jobs. Organizations using Flowise in queue mode with the dashboard enabled should prioritize addressing this vulnerability to mitigate the risk of data leaks and unauthorized access.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-100608
Severity
HIGH
CVSS
8.3
EPSS
0.27%

Original NVD Description

Flowise through 3.1.4 does not enforce authorization on the BullMQ admin dashboard. When the server runs in queue mode with the dashboard enabled and not in cloud mode (MODE=queue, ENABLE_BULLMQ_DASHBOARD=true, and !isCloud()), the /admin/queues mount is protected only by the verifyTokenForBullMQDashboard middleware, which validates the JWT but performs no role, permission, or workspace/organization scoping check; the mount also lies outside /api/v1/* so the global API gate does not apply. As a result, any authenticated user — including the lowest-privileged member of any tenant — can reach the full Bull-Board UI and view all queues and job payloads across the entire instance, including chat inputs and overrideConfig (which may carry credentials and prompts), chatflow.flowData graph definitions with custom function source code, credential IDs and system prompts, chatIds, files, and the originating orgId/workspaceId. The dashboard's write actions (retry, remove, promote, clean) are likewise usable across tenants. No patched version is available as of the advisory.