| CVE ID | Title | Vendor | Product | Severity | CVSS Score | Published At | AI Analysis |
|---|---|---|---|---|---|---|---|
| CVE-2024-7983 | Denial of Service in open-webui/open-webui | open-webui | open-webui/open-webui | 高危 | - | 2025-03-20 10:10:36 | Deep Dive |
| CVE-2024-7044 | Stored XSS in open-webui/open-webui | open-webui | open-webui/open-webui | 中危 | - | 2025-03-20 10:10:24 | Deep Dive |
| CVE-2024-7045 | Improper Access Control in open-webui/open-webui | open-webui | open-webui/open-webui | 中危 | - | 2025-03-20 10:10:18 | Deep Dive |
| CVE-2024-10019 | Path Traversal and OS Command Injection in parisneo/lollms-webui | parisneo | parisneo/lollms-webui | 中危 | - | 2025-03-20 10:10:15 | Deep Dive |
| CVE-2024-11045 | Cross-Site WebSocket Hijacking (CSWSH) in automatic1111/stable-diffusion-webui | automatic1111 | automatic1111/stable-diffusion-webui | 超危 | - | 2025-03-20 10:10:12 | Deep Dive |
| CVE-2024-9920 | Unrestricted File Upload and Execution in parisneo/lollms-webui | parisneo | parisneo/lollms-webui | 中危 | - | 2025-03-20 10:10:08 | Deep Dive |
| CVE-2024-7035 | Cross-Site Request Forgery (CSRF) in open-webui/open-webui | open-webui | open-webui/open-webui | 中危 | - | 2025-03-20 10:10:04 | Deep Dive |
| CVE-2024-12375 | Local File Inclusion in automatic1111/stable-diffusion-webui | automatic1111 | automatic1111/stable-diffusion-webui | 中危 | - | 2025-03-20 10:10:03 | Deep Dive |
| CVE-2024-7036 | Denial of Service in open-webui/open-webui | open-webui | open-webui/open-webui | 高危 | - | 2025-03-20 10:09:58 | Deep Dive |
| CVE-2024-9919 | Missing Authentication Check in parisneo/lollms-webui | parisneo | parisneo/lollms-webui | 高危 | - | 2025-03-20 10:09:56 | Deep Dive |
| CVE-2024-7033 | Arbitrary File Write in open-webui/open-webui | open-webui | open-webui/open-webui | 中危 | - | 2025-03-20 10:09:55 | Deep Dive |
| CVE-2024-10935 | Unauthenticated DoS via Multipart Boundary in automatic1111/stable-diffusion-webui | automatic1111 | automatic1111/stable-diffusion-webui | 高危 | - | 2025-03-20 10:09:52 | Deep Dive |
| CVE-2024-8060 | Remote Code Execution in OpenWebUI via Arbitrary File Upload | open-webui | open-webui/open-webui | 高危 | - | 2025-03-20 10:09:49 | Deep Dive |
| CVE-2024-7040 | Improper Access Control in open-webui/open-webui | open-webui | open-webui/open-webui | 中危 | - | 2025-03-20 10:09:45 | Deep Dive |
| CVE-2024-7046 | Improper Access Control in open-webui/open-webui | open-webui | open-webui/open-webui | 中危 | - | 2025-03-20 10:09:38 | Deep Dive |
| CVE-2024-10047 | Directory Listing Vulnerability in parisneo/lollms-webui | parisneo | parisneo/lollms-webui | 中危 | - | 2025-03-20 10:09:36 | Deep Dive |
| CVE-2024-11044 | Open Redirect in automatic1111/stable-diffusion-webui | automatic1111 | automatic1111/stable-diffusion-webui | 中危 | - | 2025-03-20 10:09:32 | Deep Dive |
| CVE-2024-8581 | Path Traversal in parisneo/lollms-webui | parisneo | parisneo/lollms-webui | 超危 | - | 2025-03-20 10:09:25 | Deep Dive |
| CVE-2024-12537 | Unauthenticated Denial of Service in open-webui/open-webui | open-webui | open-webui/open-webui | 高危 | - | 2025-03-20 10:09:11 | Deep Dive |
| CVE-2024-7959 | SSRF in open-webui/open-webui | open-webui | open-webui/open-webui | 高危 | - | 2025-03-20 10:09:00 | Deep Dive |