CVE MEDIUM CVE-2024-3099

intended model, as it will open a different model each time. Additionally, an attacker can exploit this vulnerability to perform data model poisoning by creating a model with the same

CVSS 5.4 mlflow View details

Picklescan is vulnerable to RCE through missing detection when calling

picklescan View details

Picklescan is vulnerable to RCE via missing detection when calling

picklescan View details

llama-index-core insecurely handles temporary files

CVSS 7.3 llama-index-core View details

Open WebUI's process_files_batch() endpoint missing ownership check

CVSS 7.1 open-webui View details

LangChain vulnerable to unsafe deserialization of attacker-controlled objects through

CVSS 8.2 langchain-core View details

Open WebUI: Redis Cache Keys tool_servers and terminal_servers

CVSS 8.7 open-webui View details

vLLM is an inference and serving engine for large language

CVSS 8.0 vllm View details