Lightrag
This hub aggregates every CVE we track for Lightrag, a product in the ai ml space. Use it to gauge the current risk picture and drill into individual advisories.
AI / MLother
4
CVEs tracked
2
Critical
0
High
0
In CISA KEV
Severity distribution
MEDIUM2CRITICAL2
Monthly trend
0
0
0
0
0
0
0
0
0
1
0
0
0
0
0
0
0
0
0
1
0
0
1
1
2024-092026-08
Latest CVEs
The 4 most recently published vulnerabilities affecting Lightrag.
- CVE-2026-61808LightRAG: Missing Authentication for Critical API Functions in Default Configuration9.8
- CVE-2026-61736LightRAG: CORS Wildcard + Credentials Enables Any-Origin Credentialed Requests9.3
- CVE-2026-39413LightRAG has a JWT Algorithm Confusion Vulnerability in LightRAG API4.2
- CVE-2025-6773HKUDS LightRAG File Upload document_routes.py upload_to_input_dir path traversal5.3
Product normalization is registry-driven with AI assist and human review. How it works