VulnWatch VulnWatch
← Back to dashboard
High nvd · CVE-2026-91933

CVE-2026-91933: Flowise before 3.1.4 fails to enforce workspace-level authorization checks in openai-realtime endpoints, allowing authen

Published Sep 15, 2026 CVSS 7.6

Flowise before 3.1.4 fails to enforce workspace-level authorization checks in openai-realtime endpoints, allowing authenticated users to access tools from ChatFlows in other workspaces by supplying an unscoped chatflowid. Attackers can invoke GET and POST requests to retrieve tool definitions and execute tools from victim workspaces, triggering external side effects and accessing sensitive tool outputs.

Affected AI Products

openai
Get the weekly digest. Every Monday: top AI security stories of the week. Free.