PoC public RAGFlow ai-ml InfiniFlow rce
SSTI в RAGFlow. Разбираем недавнюю CVE в популярном генеративном движке
CVE Tools coverage
A proof-of-concept exploit has been published for CVE-2026-28797, a Server-Side Template Injection (SSTI) flaw in InfiniFlow's RAGFlow that enables remote code execution. The vulnerability affects versions up to and including 0.24.0, where insufficient sanitization of Jinja templates within AI agent data manipulation blocks allows any authenticated user to execute arbitrary server-side commands. With a CVSS 4.0 score of 8.7, this high-risk issue impacts a widely adopted open-source engine featuring over 87,000 GitHub stars. Administrators should upgrade to version 0.26.4 or later to mitigate the risk.