{"uid":"cap_PZZq-jF6Vme5zg6_qeN4B","slug":"tenjin-security-brief-flowise-3-1-3-agent-control-plane-advisory-b1323090","name":"Tenjin Security Brief: Flowise 3.1.3 Agent Control Plane Advisory","description":"GitHub published 14 reviewed Flowise advisories inside today's window, including 7 critical RCE-class issues and 6 high-severity control-plane failures affecting flowise and flowise-components <=3.1.2; the shared patched version is 3.1.3.","url":"https://tenjin.blog/api/read/security-briefs/security-briefs-daily-flowise-3-1-3-closed-the-agent-control-plane","method":"GET","headers":{},"bodySchema":{"type":"object","$schema":"https://json-schema.org/draft/2020-12/schema","required":["input"],"properties":{"input":{"type":"object","required":["type","method"],"properties":{"type":{"type":"string","const":"http"},"method":{"enum":["GET"],"type":"string"},"pathParams":{"type":"object","required":["handle","slug"],"properties":{"slug":{"type":"string","description":"The article's URL slug, unique per creator. The reserved slug `latest` resolves to the creator's newest published piece; its stable scheduled-read form is the wallet-address URL /api/read/<0x-address>/latest (a handle `latest` is not payable)."},"handle":{"type":"string","description":"The creator's handle, or their wallet address. The address form is REQUIRED for a durable `latest` alias (a handle `latest` is not payable), and is the only form for an unclaimed creator."}}},"queryParams":{"type":"object","required":[],"properties":{},"additionalProperties":false}},"additionalProperties":false},"output":{"type":"object","required":["type"],"properties":{"type":{"type":"string"},"example":{"type":"object"}}}}},"responseSchema":null,"example":null,"exampleRequest":null,"tags":["x402"],"displayCostAmount":"0.1","displayCostAsset":"USDC","priceDynamic":false,"priceHint":null,"priceStatus":"priced","priceSource":"probe","requiresHandshake":false,"reviewCount":0,"rating":{"score":"0.00","successRate":"0.00","reviews":0,"stars":null,"state":"unrated"},"availabilityStatus":"unknown","priceObserved":null,"sessionDeposit":null,"pricing":{"kind":"static","summary":"$0.1/call","primary":{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.1","per":"call","confidence":"exact"},"accepted":[{"kind":"static","protocol":"x402","network":"base","amountUsd":"0.1","per":"call","confidence":"exact"}]},"paymentMethods":[{"uid":"pm_YziHuWz-51Q6FCTjFsmwP","protocol":"x402","methodType":"crypto","chain":"base","mode":"charge","costAmount":"0.1","costPer":"request","priority":0,"asset":"0x833589fCD6eDb6E08f4c7C32D4f71b54bdA02913","unit":"request","depositMicros":null,"planRef":null}],"brandName":null,"brandSlug":null,"brandBaseUrl":null,"brandDocsUrl":null,"whatItDoes":"Returns a daily security brief covering the 14 GitHub-published Flowise advisories (7 critical RCE, 6 high-severity control-plane) affecting flowise and flowise-components <=3.1.2, patched in 3.1.3.","exampleAgentPrompt":"Pull the Tenjin security brief on Flowise 3.1.3 — I want to know about the critical RCE and high-severity control-plane vulnerabilities that were patched, including which versions are affected.","exampleUseCases":[{"title":"DevSecOps patch prioritization alert","prompt":"Get me the Tenjin daily security brief on the Flowise 3.1.3 advisories — I need to know which of our Flowise deployments are running a vulnerable version and what the critical RCE issues are so I can prioritize patching."},{"title":"AI agent framework vulnerability audit","prompt":"Fetch the Tenjin security brief for the Flowise agent control-plane advisories — I'm auditing our LLM infrastructure and need details on the 7 critical RCE-class issues and 6 high-severity failures affecting flowise-components."},{"title":"Security team daily briefing","prompt":"Read today's Tenjin security brief covering the GitHub-published Flowise advisories so I can include a summary of the 14 CVEs and the 3.1.3 patch in our morning security standup."}],"resultDescription":"A structured security brief article detailing the 14 GitHub-published Flowise advisories, including descriptions of 7 critical RCE-class vulnerabilities and 6 high-severity control-plane failures affecting flowise and flowise-components versions <=3.1.2, with the shared patched version (3.1.3) and remediation guidance.","failureModes":["Article not found if slug is incorrect or not yet published (404)","Creator handle or wallet address invalid (400)","Payment not completed or x402 authorization missing (402)","Network or upstream timeout returning the article content","Slug 'latest' used with a handle instead of wallet address (not payable, per schema constraint)"],"whenToPreferThis":"Use this endpoint when you need a curated, human-reviewed daily security brief specifically about Flowise CVEs and the 3.1.3 patch — particularly when you need structured narrative context beyond raw GitHub advisory data, or when integrating security briefing into an automated agent workflow that pays per read.","instructions":null,"reviewSummary":null,"reviewSummaryHighlights":null,"reviewSummaryConcerns":null,"reviewSummaryGeneratedAt":null,"activationCount":0,"lastUsedAt":null,"lastSuccessfullyRanAt":null,"lastHealthCheckAt":"2026-09-15T12:58:05.142Z","isFirstParty":false}