A vulnerability was found in FlowiseAI Flowise up to 3.1.2. It has been declared as critical. This vulnerability affects unknown code of the file packages/components/src/utils.ts of the component Code Execution Sandbox. Such manipulation of the argument vars leads to improper privilege management.
This vulnerability is documented as CVE-2026-70471. The attack can be executed remotely. There is not any exploit available.
It is recommended to upgrade the affected component.