The Flowise AI agent builder platform faces active exploitation of CVE-2025-59528, a critical remote code execution vulnerability with the maximum CVSS score of 10.0 discovered by security researcher Kim SooHyun. The flaw in Flowise's CustomMCP node allows attackers with only an API token to inject code and access dangerous Node.js modules like child_process, enabling full system compromise, command execution, and data exfiltration. Security firm VulnCheck identified exploitation attempts from a Starlink IP address targeting the over 12,000 Flowise instances exposed on the internet, more than six months after the vulnerability became public in September 2025. Flowise patched the issue in version 3.0.6, but the vulnerability represents the third instance of in-the-wild exploitation affecting the platform used by numerous large corporations.
Aug 9, 2026 · 9 sources
Aug 7, 2026 · 6 sources
Aug 6, 2026 · 4 sources
Aug 10, 2026 · 3 sources
Story comments
Loading comments…