intended model, as it will open a different model each time. Additionally, an attacker can exploit this vulnerability to perform data model poisoning by creating a model with the same
Stanza: Remote Code Execution via Unsafe Pickle Deserialization in Model
llama-index-core insecurely handles temporary files
Open WebUI's process_files_batch() endpoint missing ownership check
Open WebUI Vulnerable to Unauthenticated RAG Configuration Disclosure
Open WebUI Vulnerable to IDOR: Retrieval API Bypasses Knowledge Base
Open WebUI: Redis Cache Keys tool_servers and terminal_servers
vLLM is an inference and serving engine for large language
PraisonAI MCP `tools/call` path-traversal => RCE via Python `.pth` injection