---
id: CVE-2026-91930
title: >-
  Flowise before 3.1.4 fails to scope enterprise organization and workspace
  membership APIs to the caller's tenant, allowing authenticated users to supply
  arbitrary organization IDs
summary: >-
  Flowise before 3.1.4 fails to scope enterprise organization and workspace
  membership APIs to the caller's tenant, allowing authenticated users to supply
  arbitrary organization IDs. Attackers can add themselves as organization
  owners, cre…
severity: high
cvss: 7.5
cvssVector: 'CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H'
cwe:
  - CWE-266
vendor: FlowiseAI
product: Flowise
affected:
  - Flowise < 3.1.4
published: '2026-09-15'
updated: '2026-09-23'
sourceUpdated: '2026-09-23T17:17:47.063'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2026-91930'
references:
  - url: >-
      https://github.com/FlowiseAI/Flowise/security/advisories/GHSA-pprx-4prj-35mj
    label: disclosure@vulncheck.com
  - url: >-
      https://www.vulncheck.com/advisories/flowise-before-3.1.4-cross-tenant-organization-admin-takeover
    label: disclosure@vulncheck.com
tags:
  - nvd
  - cve.org
  - exploit-available
epss: 0.00401
epssPercentile: 0.315
exploitAvailable: true
ssvc:
  exploitation: poc
  automatable: 'no'
  technicalImpact: total
  timestamp: '2026-09-20T00:26:49.616579Z'
ingestedAt: '2026-09-15T15:39:12.929Z'
---

## Overview

Flowise before 3.1.4 fails to scope enterprise organization and workspace membership APIs to the caller's tenant, allowing authenticated users to supply arbitrary organization IDs. Attackers can add themselves as organization owners, create workspaces, and gain administrative access to victim organizations by exploiting insufficient tenant isolation in the organizationuser and workspace endpoints.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
