A vulnerability was found in FlowiseAI Flowise up to 3.1.2 and classified as problematic. Affected is the function
checkAnyPermission of the file packages/server/src/routes/executions/index.ts of the component Execution Endpoint. The manipulation results in permission issues.
This vulnerability is identified as CVE-2026-70475. The attack can be executed remotely. There is not any exploit available.
It is suggested to upgrade the affected component.