library for large language models. Prior to version 0.9.4, a Server-Side Request Forgery (SSRF) vulnerability in the chat API allows any authenticated user to force the server to make

CVSS 8.1 llamafactory View details

customized large language model flow. In version 3.0.5, a Server-Side Request Forgery (SSRF) vulnerability was discovered in the /api/v1/fetch-links endpoint of the Flowise application. This vulnerability allows an attacker

CVSS 7.5 flowise View details

endpoint in open-webui/open-webui version 0.3.8 is vulnerable to Server-Side Request Forgery (SSRF). An attacker can change the OpenAI URL to any URL without checks, causing the endpoint

CVSS 7.7 open_webui View details

version 3.83 of binary-husky/gpt_academic, a Server-Side Request Forgery (SSRF) vulnerability exists in the Markdown_Translate.get_files_from_everything() API. This vulnerability is exploited through the HotReload(Markdown翻译中) plugin

CVSS 7.5 gpt_academic View details

Academic version 3.83 is vulnerable to a Server-Side Request Forgery (SSRF) vulnerability through its HotReload plugin function, which calls the crazy_utils.get_files_from_everything() API without proper sanitization. This

CVSS 7.5 gpt_academic View details

Label Studio allows Server-Side Request Forgery in the S3

CVSS 8.6 label-studio View details

Server-Side Request Forgery (SSRF) vulnerability exists in berriai/litellm version 1.38.10. This vulnerability allows users to specify the `api_base` parameter when making requests to `POST /chat/completions`, causing the application

CVSS 7.5 litellm View details

Server-Side Request Forgery (SSRF) vulnerability exists in the Web Research Retriever component of langchain-ai/langchain version 0.1.5. The vulnerability arises because the Web Research Retriever does not restrict

CVSS 7.7 langchain View details

Server-Side Request Forgery (SSRF) vulnerability exists in the gradio-app/gradio version 4.21.0, specifically within the `/queue/join` endpoint and the `save_url_to_cache` function. The vulnerability arises when

CVSS 8.6 gradio View details

attacker to force the service to retrieve data from an arbitrary URL, essentially providing SSRF and potentially injecting content into downstream tasks

CVSS 7.5 langchain View details

LangChain before 0.0.317 allows SSRF via document_loaders/recursive_url_loader.py because crawling can proceed from an external server to an internal server

CVSS 8.8 langchain View details

Open WebUI: Any authenticated user can reach internal services and

CVSS 7.1 open-webui View details

Open WebUI: SSRF into internal services via unvalidated sub-resource requests in the Playwright web loader

CVSS 7.7 open-webui View details

Flyto2 Core is an execution kernel for automation and AI

CVSS 8.5 flyto-core View details

Send Email Node Arbitrary File Read and SSRF via Nodemailer Content-Object Type Confusion

Open WebUI has a SSRF Bypass via HTTP Redirect Following in Web-Fetch and Image-Load Endpoints (not addressed

CVSS 8.5 open-webui View details

PraisonAI: Unauthenticated Allow-List Manipulation Bypasses Agent Tool Approval Safety

CVSS 7.9 PraisonAI View details

PraisonAI Has SSRF in FileTools.download_file() via Unvalidated

CVSS 8.6 praisonaiagents View details

PraisonAI: SSRF via Unvalidated api_base in passthrough() Fallback

CVSS 7.7 praisonai View details

picklescan has Arbitrary file read using `io.FileIO`

picklescan View details
Previous Page 4 of 5 Next