CVE-2026-41264: A Regex Let Prompts Run Code in Flowise
Flowise, the open source drag-and-drop builder for LLM apps, had a CVSS 9.8 flaw: its CSV Agent asked a model to write pandas code, checked it with a regex, and ran it on the server. An alias os as pandas bypass gave RCE; the 3.1.0 fix failed and the feature was removed in June.
- CVE-2026-41264 carries a CVSS score of 9.8
- Bypass: alias os as pandas passed the regex check
- The 3.1.0 fix failed; five more CVEs followed in three months
- In June Flowise removed the CSV Agent and its 390-line validator
Read next
Security