A vulnerability categorized as problematic has been discovered in FlowiseAI Flowise up to 3.1.4. Affected by this issue is some unknown functionality of the file /api/v1/openai-assistants-file/download. Executing a manipulation of the argument chatflowId/chatId/fileName can lead to improper authorization.

This vulnerability is registered as CVE-2026-71962. It is possible to launch the attack remotely. No exploit is available.