Skip to content
release
BETA
Releases
Tools
Vendors
Trending
$refs.securityHub.focus())"
:aria-expanded="open"
aria-haspopup="menu"
class="inline-flex items-center gap-1 px-3 py-1.5 rounded text-[13px] font-medium transition-colors text-[var(--text-secondary)] dark:text-[var(--text-muted)] hover:text-[var(--text-primary)] dark:hover:text-[var(--text-primary)] hover:bg-[var(--surface-hover)] dark:hover:bg-[var(--surface-elevated)]"
>
Security
Tools
/
Flowise
FL
Flowise
AI Agents & Assistants
A visual builder for creating and managing AI agents
Features
Visual workflow editor for designing AI agent flows
Docker‑Compose and standalone Docker image deployment options
Node.js backend with React frontend in a mono‑repo setup
Extensible component system for third‑party node integrations
Security Response History
1 CVE
CVE
Severity
Disclosed
Patched (this tool)
vs Ecosystem Median
CVE-2025-31125
KEV
medium
CVSS 5.3
2025-03-31
2025-06-12
2mo / median 9mo
Security fixes
Hardcoded CORS wildcard on TTS endpoint enables cross-origin credential abuse Credential data leak vulnerability Multiple mass assignment vulnerabilities across Tools, Variables, Chatflow, Assistant, Dataset, and Custom Template endpoints
Notable features
Pipedream MCP integration Browserless MCP integration Email change confirmation flow
Notable features
AgentFlow Rich Text editor for content editing AgentFlow support for additional load methods AgentFlow API client deduplication
Breaking changes
HTTP security checks enabled by default — blocks localhost, 127.0.0.1, and internal addresses unless configured via HTTP_SECURITY_CHECK=false or HTTP_DENY_LIST
Security fixes
Default HTTP deny list for SSRF mitigation Path traversal protections HTTPS enforcement for user-provided URLs
Notable features
Azure Blob Storage support AWS STS AssumeRole support AgentFlow SDK (@flowiseai/agentflow v0.0.0-dev.2)
Security fixes
Mass assignment prevention in registration DNS rebinding/TOCTOU vulnerability mitigation
Notable features
Azure Rerankers support ChatCerebras v3.0 enhancement Ollama Cloud integration
Notable features
Image upload support for ChatOpenRouter Structured JSON output support for Agent Node Gemini Code Interpreter integration
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Releases per month
Releases per month, last 12 months.
Cadence
0.2 / wk
Last release
50d
Tracked
14
Security score
3.8/10
OpenSSF
—
Open CVEs
0
KEV exposure
0
SBOM
SECURITY.md
Active maintainer
Community
GitHub stars
53,267
Forks
24,460
Open issues
881
Open PRs
300
Stars/wk velocity
0.0
HN peak
2
About
Languages
TypeScript
·
JavaScript
·
HTML
TypeScript
Types included ✓
View on GitHub
View on npm
Homepage
Documentation
{ copied = true; setTimeout(() => copied = false, 2000) })"
class="flex items-center gap-1.5 text-[12px] text-[var(--text-muted)] dark:text-[var(--text-muted)] hover:text-[var(--accent)] dark:hover:text-[var(--accent)] transition-colors"
>
About
Languages
TypeScript
·
JavaScript
·
HTML
TypeScript
Types included ✓
View on GitHub
View on npm
Homepage
Documentation
{ copied = true; setTimeout(() => copied = false, 2000) })"
class="flex items-center gap-1.5 text-[12px] text-[var(--text-muted)] dark:text-[var(--text-muted)] hover:text-[var(--accent)] dark:hover:text-[var(--accent)] transition-colors"
>
© 2026 releaseport. All rights reserved.
Feed
Tools
Feeds
Security
Brief
Search tools, categories, lists, and users
Use ↑↓ to navigate, Enter to open, Esc to close
No results for " "
⌘K to open
↑↓ navigate
⏎ open