CVE Database

117989+ vulnerabilities with CVSS scores, EPSS exploit predictions, and CISA KEV status. Updated daily.

Filter: All CRITICAL HIGH MEDIUM LOW CISA KEV
Sort: Newest CVSS EPSS
CVE-2024-7046
4.3 MEDIUM

An improper access control vulnerability in open-webui/open-webui v0.3.8 allows an attacker to view admin details. The application does not verify whether the attacker is an …

Mar 20, 2025
CVE-2024-7045
4.3 MEDIUM

In version v0.3.8 of open-webui/open-webui, improper access control vulnerabilities allow an attacker to view any prompts. The application does not verify whether the attacker is …

Mar 20, 2025
CVE-2024-7044
8.9 HIGH

A Stored Cross-Site Scripting (XSS) vulnerability exists in the chat file upload functionality of open-webui/open-webui version 0.3.8. An attacker can inject malicious content into a …

Mar 20, 2025
CVE-2024-7043
8.8 HIGH

An improper access control vulnerability in open-webui/open-webui v0.3.8 allows attackers to view and delete any files. The application does not verify whether the attacker is …

Mar 20, 2025
CVE-2024-7040
4.9 MEDIUM

In version v0.3.8 of open-webui/open-webui, there is an improper access control vulnerability. On the frontend admin page, administrators are intended to view only the chats …

Mar 20, 2025
CVE-2024-7039
6.7 MEDIUM

In open-webui/open-webui version v0.3.8, there is an improper privilege management vulnerability. The application allows an attacker, acting as an admin, to delete other administrators via …

Mar 20, 2025
CVE-2024-7036
7.5 HIGH

A vulnerability in open-webui/open-webui v0.3.8 allows an unauthenticated attacker to sign up with excessively large text in the 'name' field, causing the Admin panel to …

Mar 20, 2025
CVE-2024-7035
6.9 MEDIUM

In version v0.3.8 of open-webui/open-webui, sensitive actions such as deleting and resetting are performed using the GET method. This vulnerability allows an attacker to perform …

Mar 20, 2025
CVE-2024-7034
7.2 HIGH

In open-webui version 0.3.8, the endpoint `/models/upload` is vulnerable to arbitrary file write due to improper handling of user-supplied filenames. The vulnerability arises from the …

Mar 20, 2025
CVE-2024-7033
7.2 HIGH

In version 0.3.8 of open-webui/open-webui, an arbitrary file write vulnerability exists in the download_model endpoint. When deployed on Windows, the application improperly handles file paths, …

Mar 20, 2025
CVE-2024-6986
5.4 MEDIUM

A Cross-site Scripting (XSS) vulnerability exists in the Settings page of parisneo/lollms-webui version 9.8. The vulnerability is due to the improper use of the 'v-html' …

Mar 20, 2025
CVE-2024-6982
8.4 HIGH

A remote code execution vulnerability exists in the Calculate function of parisneo/lollms version 9.8. The vulnerability arises from the use of Python's `eval()` function to …

Mar 20, 2025
CVE-2024-6866
7.5 HIGH

corydolphin/flask-cors version 4.01 contains a vulnerability where the request path matching is case-insensitive due to the use of the `try_match` function, which is originally intended …

Mar 20, 2025
CVE-2024-6863
6.5 MEDIUM

In h2oai/h2o-3 version 3.46.0, an endpoint exposing a custom EncryptionTool allows an attacker to encrypt any files on the target server with a key of …

Mar 20, 2025
CVE-2024-6854
7.1 HIGH

In h2oai/h2o-3 version 3.46.0, the endpoint for exporting models does not restrict the export location, allowing an attacker to export a model to any file …

Mar 20, 2025
CVE-2024-6851
7.5 HIGH

In version 3.22.0 of aimhubio/aim, the LocalFileManager._cleanup function in the aim tracking server accepts a user-specified glob-pattern for deleting files. The function does not verify …

Mar 20, 2025
CVE-2024-6844
5.3 MEDIUM

A vulnerability in corydolphin/flask-cors version 4.0.1 allows for inconsistent CORS matching due to the handling of the '+' character in URL paths. The request.path is …

Mar 20, 2025
CVE-2024-6842
7.5 HIGH

In version 1.5.5 of mintplex-labs/anything-llm, the `/setup-complete` API endpoint allows unauthorized users to access sensitive system settings. The data returned by the `currentSettings` function includes …

Mar 20, 2025
CVE-2024-6841
6.5 MEDIUM

A Cross-Site Request Forgery (CSRF) vulnerability exists in the latest commit (56b782bcefd2e59b19cd7ba7878b95f54884f502) of the vanna-ai/vanna repository. Two endpoints in the built-in web app that provide …

Mar 20, 2025
CVE-2024-6839
5.3 MEDIUM

corydolphin/flask-cors version 4.0.1 contains an improper regex path matching vulnerability. The plugin prioritizes longer regex patterns over more specific ones when matching paths, which can …

Mar 20, 2025
CVE-2024-6838
5.3 MEDIUM

In mlflow/mlflow version v2.13.2, a vulnerability exists that allows the creation or renaming of an experiment with a large number of integers in its name …

Mar 20, 2025
CVE-2024-6829
9.1 CRITICAL

A vulnerability in aimhubio/aim version 3.19.3 allows an attacker to exploit the `tarfile.extractall()` function to extract the contents of a maliciously crafted tarfile to arbitrary …

Mar 20, 2025
CVE-2024-6827
7.5 HIGH

Gunicorn version 21.2.0 does not properly validate the value of the 'Transfer-Encoding' header as specified in the RFC standards, which leads to the default fallback …

Mar 20, 2025
CVE-2024-6825
8.8 HIGH

BerriAI/litellm version 1.40.12 contains a vulnerability that allows remote code execution. The issue exists in the handling of the 'post_call_rules' configuration, where a callback function …

Mar 20, 2025
CVE-2024-6583
4.3 MEDIUM

A path traversal vulnerability exists in the latest version of stangirard/quivr. This vulnerability allows an attacker to upload files to arbitrary paths in an S3 …

Mar 20, 2025
CVE-2024-6577
6.3 MEDIUM

In the latest version of pytorch/serve, the script 'upload_results_to_s3.sh' references the S3 bucket 'benchmarkai-metrics-prod' without ensuring its ownership or confirming its accessibility. This could lead …

Mar 20, 2025
CVE-2024-6483
5.3 MEDIUM

A vulnerability in the `runs/delete-batch` endpoint of aimhubio/aim version 3.19.3 allows for arbitrary file or directory deletion through path traversal. The endpoint does not mitigate …

Mar 20, 2025
CVE-2024-5752
9.1 CRITICAL

A path traversal vulnerability exists in stitionai/devika, specifically in the project creation functionality. In the affected version beacf6edaa205a5a5370525407a6db45137873b3, the project name is not validated, allowing …

Mar 20, 2025
CVE-2024-4990
9.1 CRITICAL

In yiisoft/yii2 version 2.0.48, the base Component class contains a vulnerability where the `__set()` magic method does not validate that the value passed is a …

Mar 20, 2025
CVE-2024-4023
8.1 HIGH

A stored cross-site scripting (XSS) vulnerability exists in flatpressblog/flatpress version 1.3. When a user uploads a file with a `.xsig` extension and directly accesses this …

Mar 20, 2025
CVE-2024-2292
7.1 HIGH

Due to a lack of access control, unauthorized users are able to view and modify information pertaining to other users.

Mar 20, 2025
CVE-2024-13060
4.3 MEDIUM

A vulnerability in AnythingLLM Docker version 1.3.1 allows users with 'Default' permission to access other users' profile pictures by changing the 'id' parameter in the …

Mar 20, 2025
CVE-2024-12911
7.1 HIGH

A vulnerability in the `default_jsonalyzer` function of the `JSONalyzeQueryEngine` in the run-llama/llama_index repository allows for SQL injection via prompt injection. This can lead to arbitrary …

Mar 20, 2025
CVE-2024-12910
5.9 MEDIUM

A vulnerability in the `KnowledgeBaseWebReader` class of the run-llama/llama_index repository, version latest, allows an attacker to cause a Denial of Service (DoS) by controlling a …

Mar 20, 2025
CVE-2024-12909
9.8 CRITICAL

A vulnerability in the FinanceChatLlamaPack of the run-llama/llama_index repository, versions up to v0.12.3, allows for SQL injection in the `run_sql_query` function of the `database_agent`. This …

Mar 20, 2025
CVE-2024-12886
7.5 HIGH

An Out-Of-Memory (OOM) vulnerability exists in the `ollama` server version 0.3.14. This vulnerability can be triggered when a malicious API server responds with a gzip …

Mar 20, 2025
CVE-2024-12882
7.5 HIGH

comfyanonymous/comfyui version v0.2.4 suffers from a non-blind Server-Side Request Forgery (SSRF) vulnerability. This vulnerability can be exploited by combining the REST APIs `POST /internal/models/download` and …

Mar 20, 2025
CVE-2024-12880
6.5 MEDIUM

A vulnerability in infiniflow/ragflow version RAGFlow-0.13.0 allows for partial account takeover via insecure data querying. The issue arises from the way tenant IDs are handled …

Mar 20, 2025
CVE-2024-12871
5.4 MEDIUM

An XSS vulnerability in infiniflow/ragflow version 0.12.0 allows an attacker to upload a malicious PDF file to the knowledge base. When the file is viewed …

Mar 20, 2025
CVE-2024-12870
5.4 MEDIUM

A stored cross-site scripting (XSS) vulnerability exists in infiniflow/ragflow, affecting the latest commit on the main branch (cec2080). The vulnerability allows an attacker to upload …

Mar 20, 2025
CVE-2024-12869
4.3 MEDIUM

In infiniflow/ragflow version v0.12.0, there is an improper authentication vulnerability that allows a user to view another user's invite list. This can lead to a …

Mar 20, 2025
CVE-2024-12866
7.5 HIGH

A local file inclusion vulnerability exists in netease-youdao/qanything version v2.0.0. This vulnerability allows an attacker to read arbitrary files on the file system, which can …

Mar 20, 2025
CVE-2024-12864
7.5 HIGH

A Denial of Service (DoS) vulnerability was discovered in the file upload feature of netease-youdao/qanything version v2.0.0. The vulnerability is due to improper handling of …

Mar 20, 2025
CVE-2024-12779
7.5 HIGH

A Server-Side Request Forgery (SSRF) vulnerability exists in infiniflow/ragflow version 0.12.0. The vulnerability is present in the `POST /v1/llm/add_llm` and `POST /v1/conversation/tts` endpoints. Attackers can …

Mar 20, 2025
CVE-2024-12778
7.5 HIGH

A vulnerability in aimhubio/aim version 3.25.0 allows for a denial of service (DoS) attack. The issue arises when a large number of tracked metrics are …

Mar 20, 2025
CVE-2024-12777
5.9 MEDIUM

A vulnerability in aimhubio/aim version 3.25.0 allows for a denial of service through the misuse of the sshfs-client. The tracking server, which is single-threaded, can …

Mar 20, 2025
CVE-2024-12776
8.1 HIGH

In langgenius/dify v0.10.1, the `/forgot-password/resets` endpoint does not verify the password reset code, allowing an attacker to reset the password of any user, including administrators. …

Mar 20, 2025
CVE-2024-12775
6.5 MEDIUM

langgenius/dify version 0.10.1 contains a Server-Side Request Forgery (SSRF) vulnerability in the test functionality for the Create Custom Tool option via the REST API `POST …

Mar 20, 2025
CVE-2024-12766
7.5 HIGH

parisneo/lollms-webui version V13 (feather) suffers from a Server-Side Request Forgery (SSRF) vulnerability in the `POST /api/proxy` REST API. Attackers can exploit this vulnerability to abuse …

Mar 20, 2025
CVE-2024-12761
7.5 HIGH

A Denial of Service (DoS) vulnerability exists in the brycedrennan/imaginairy repository, version 15.0.0. The vulnerability is present in the `/api/stablestudio/generate` endpoint, which can be exploited …

Mar 20, 2025

Scan your infrastructure for known CVEs

Free website and port scanning — find vulnerabilities before attackers do.