Parisneo/lollms-webui
This hub aggregates every CVE we track for Parisneo/lollms-webui, a product in the ai ml space. Use it to gauge the current risk picture and drill into individual advisories.
53
CVEs tracked
20
Critical
22
High
0
In CISA KEV
Severity distribution
HIGH22CRITICAL20MEDIUM8LOW3
Monthly trend
1
0
1
3
1
0
0
0
10
0
0
0
0
0
0
0
0
0
0
1
0
0
0
0
2024-072026-06
Latest CVEs
The 15 most recently published vulnerabilities affecting Parisneo/lollms-webui.
- CVE-2024-2356Remote Code Execution due to LFI in '/reinstall_extension' in parisneo/lollms-webui9.6
- CVE-2024-12766SSRF in parisneo/lollms-webui7.5
- CVE-2024-8736Denial of Service (DoS) via Multipart Boundary in parisneo/lollms-webui6.5
- CVE-2024-8898Path Traversal in parisneo/lollms-webui9.8
- CVE-2025-1451Insufficient Patch Leading to DoS in parisneo/lollms-webui7.5
- CVE-2024-6986Cross-site Scripting (XSS) in parisneo/lollms-webui5.4
- CVE-2024-10019Path Traversal and OS Command Injection in parisneo/lollms-webui6.7
- CVE-2024-9920Unrestricted File Upload and Execution in parisneo/lollms-webui8.8
- CVE-2024-9919Missing Authentication Check in parisneo/lollms-webui8.4
- CVE-2024-10047Directory Listing Vulnerability in parisneo/lollms-webui5.3
- CVE-2024-8581Path Traversal in parisneo/lollms-webui9.1
- CVE-2024-5125XSS and Open Redirect via SVG File Upload in parisneo/lollms-webui7.3
- CVE-2024-6673CSRF Vulnerability in parisneo/lollms-webui6.5
- CVE-2024-6674Data Leak through CORS Misconfiguration in parisneo/lollms-webui7.1
- CVE-2024-6959Denial of Service (DOS) in multipart boundary while uploading file in parisneo/lollms-webui7.1
Product normalization is registry-driven with AI assist and human review. How it works