Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

SillyTavern — Vulnerabilities & Security Advisories 12

All 12 CVE vulnerabilities found in SillyTavern, with AI-generated Chinese analysis, references, and POCs.

Vendor: SillyTavern

CVE ID Title CVSS Severity Published
CVE-2026-44651 SillyTavern: Reflected XSS vulnerability in the CORS proxy middleware CWE-79 - - 2026-05-29
CVE-2026-44650 SillyTavern: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CWE-22 9.1 Critical 2026-05-29
CVE-2026-44648 SillyTavern: Existing sessions are not invalidated after password change, allowing session reuse and account takeover CWE-613 7.5 High 2026-05-29
CVE-2026-44649 SillyTavern: Authentication Bypass via SSO Header Injection CWE-290 9.8 Critical 2026-05-29
CVE-2026-44652 SillyTavern: SSRF vulnerability in the CORS proxy middleware CWE-918 - - 2026-05-29
CVE-2026-46372 SillyTavern: SSRF in SearXNG Search Proxy via Unvalidated baseUrl CWE-918 8.5 High 2026-05-29
CVE-2026-34526 SillyTavern: Incomplete IP validation in /api/search/visit allows SSRF via localhost and IPv6 CWE-918 5.0 Medium 2026-04-02
CVE-2026-34524 SillyTavern: Path traversal in `/api/chats/export` and `/api/chats/delete` allows arbitrary file read/delete within user data root CWE-22 8.3 High 2026-04-02
CVE-2026-34523 SillyTavern: Path traversal allows file existence oracle CWE-22 5.3 Medium 2026-04-02
CVE-2026-34522 SillyTavern: Path traversal in `/api/chats/import` allows arbitrary file write outside intended chat directory CWE-22 8.1 High 2026-04-02
CVE-2026-26286 SillyTavern has Server-Side Request Forgery (SSRF) via Asset Download Endpoint that Allows Reading Internal Services CWE-918 6.5 - 2026-02-19
CVE-2025-59159 SillyTavern Web Interface Vulnerable to DNS Rebinding CWE-346 9.7 Critical 2025-10-06

All 12 known CVE vulnerabilities affecting SillyTavern with full Chinese analysis, references, and POCs where available.