Libre Chat是Vincent Emonet个人开发者的一个免费开源大型语言模型 (LLM) 聊天机器人 Web UI 和 API。 Libre Chat v0.0.6版本存在安全漏洞,该漏洞源于upload_documents方法中存在一个问题。攻击者利用该漏洞可以在已上传的文件中提供精心设计的文件名来执行路径遍历。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-11664 | 8.8 HIGH | eNMS TGZ File controller.py multiselect_filtering path traversal |
| CVE-2024-53930 | WikiDocs 安全漏洞 | |
| CVE-2024-45756 | Centreon 安全漏洞 | |
| CVE-2024-45755 | Centreon 安全漏洞 | |
| CVE-2024-50672 | Adapt Authoring Tool 安全漏洞 | |
| CVE-2024-50671 | Adapt Authoring Tool 安全漏洞 | |
| CVE-2024-53597 | masterstack_imgcap 安全漏洞 | |
| CVE-2024-53554 | Taiga 安全漏洞 | |
| CVE-2024-53556 | Taiga 安全漏洞 | |
| CVE-2024-53599 | LafeLabs Chaos 安全漏洞 |
No comments yet