Skip to content
release
BETA
Releases
Tools
Vendors
Trending
$refs.securityHub.focus())"
:aria-expanded="open"
aria-haspopup="menu"
class="inline-flex items-center gap-1 px-3 py-1.5 rounded text-[13px] font-medium transition-colors text-[var(--text-secondary)] dark:text-[var(--text-muted)] hover:text-[var(--text-primary)] dark:hover:text-[var(--text-primary)] hover:bg-[var(--surface-hover)] dark:hover:bg-[var(--surface-elevated)]"
>
Security
Tools
/
Flowise
FL
Flowise
AI Agents & Assistants
A visual, open‑source platform for building and orchestrating AI agents
Features
Visual workflow builder for designing AI agent flows
Docker‑based deployment with Docker Compose and standalone images
Self‑hosting support across major cloud providers (AWS, Azure, GCP, etc.)
Extensible node components for integrating third‑party services
Security Response History
1 CVE
CVE
Severity
Disclosed
Patched (this tool)
vs Ecosystem Median
CVE-2025-31125
KEV
medium
CVSS 5.3
2025-03-31
2025-06-12
2mo / median 9mo
Review required
Auth
Dependencies
Clickjacking fix + Agentflow enhancements + Observe
Security fixes
Hardcoded CORS wildcard on TTS endpoint enables cross-origin credential abuse Credential data leak vulnerability Multiple mass assignment vulnerabilities across Tools, Variables, Chatflow, Assistant, Dataset, and Custom Template endpoints
Notable features
Pipedream MCP integration Browserless MCP integration Email change confirmation flow
Notable features
AgentFlow Rich Text editor for content editing AgentFlow support for additional load methods AgentFlow API client deduplication
Breaking changes
HTTP security checks enabled by default — blocks localhost, 127.0.0.1, and internal addresses unless configured via HTTP_SECURITY_CHECK=false or HTTP_DENY_LIST
Security fixes
Default HTTP deny list for SSRF mitigation Path traversal protections HTTPS enforcement for user-provided URLs
Notable features
Azure Blob Storage support AWS STS AssumeRole support AgentFlow SDK (@flowiseai/agentflow v0.0.0-dev.2)
Security fixes
Mass assignment prevention in registration DNS rebinding/TOCTOU vulnerability mitigation
Notable features
Azure Rerankers support ChatCerebras v3.0 enhancement Ollama Cloud integration
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Releases per month
Releases per month, last 12 months.
Cadence
0.1 / wk
Last release
31d
Tracked
15
Security score
0.8/10
OpenSSF
—
Open CVEs
0
KEV exposure
0
SECURITY.md
Active maintainer
Community
GitHub stars
54,741
Forks
24,733
Contributors 90d
15
Open issues
1,008
Open PRs
400
Stars/wk velocity
0.0
HN peak
2
About
Languages
TypeScript
·
JavaScript
·
HTML
TypeScript
Types included ✓
View on GitHub
View on npm
Homepage
Documentation
{ copied = true; setTimeout(() => copied = false, 2000) })"
class="flex items-center gap-1.5 text-[12px] text-[var(--text-muted)] dark:text-[var(--text-muted)] hover:text-[var(--accent)] dark:hover:text-[var(--accent)] transition-colors"
>
Install & Platforms
Install via
npm
docker
docker-compose
About
Languages
TypeScript
·
JavaScript
·
HTML
TypeScript
Types included ✓
View on GitHub
View on npm
Homepage
Documentation
{ copied = true; setTimeout(() => copied = false, 2000) })"
class="flex items-center gap-1.5 text-[12px] text-[var(--text-muted)] dark:text-[var(--text-muted)] hover:text-[var(--accent)] dark:hover:text-[var(--accent)] transition-colors"
>
Install & Platforms
Install via
npm
docker
docker-compose
© 2026 releaseport. All rights reserved.
Feed
Tools
Feeds
Security
Brief
Search tools, categories, lists, and users
Use ↑↓ to navigate, Enter to open, Esc to close
No results for " "
⌘K to open
↑↓ navigate
⏎ open