Ecosyste.ms: Advisories

An open API service providing security vulnerability metadata for many open source software ecosystems.

pypi lollms Security Advisories

Browse all Security Advisories for pypi lollms

Loading...
Moderate
GSA_kwCzR0hTQS02aDY0LWc3Y2otaGo1Ns4ABAOH
Lord of Large Language Models (LoLLMs) path traversal vulnerability in the api open_personality_folder endpoint
Ecosystems: pypi
Packages: lollms
Source: GitHub Advisory Database
Blast Radius: 2.6
Published: 6 days ago
Low
GSA_kwCzR0hTQS03cGdyLTMyZngtYzZ4Oc4ABAM8
Lord of Large Language Models (LoLLMs) Server path traversal vulnerability in lollms_file_system.py
Ecosystems: pypi
Packages: lollms
Source: GitHub Advisory Database
Blast Radius: 2.0
Published: 6 days ago
High
GSA_kwCzR0hTQS04bXJtLXI3aDMtYzNoas4AA-BA
LoLLMS vulnerable to Expected Behavior Violation
Ecosystems: pypi
Packages: lollms
Source: GitHub Advisory Database
Blast Radius: 4.4
Published: 3 months ago
High
GSA_kwCzR0hTQS1tNDVjLXY0NmgtYzc4OM4AA9Z4
lollms path traversal vulnerability allows overriding of config.yaml file, leading to RCE
Ecosystems: pypi
Packages: lollms
Source: GitHub Advisory Database
Blast Radius: 4.5
Published: 4 months ago
High
GSA_kwCzR0hTQS13OXFmLTgzamctMng2Y84AA9Zx
lollms vulnerable to dot-dot-slash path traversal in XTTS server
Ecosystems: pypi
Packages: lollms
Source: GitHub Advisory Database
Blast Radius: 4.4
Published: 4 months ago
High
GSA_kwCzR0hTQS05Y2htLW02eDItNmZ2Y84AA9Zw
lollms vulnerable to path traversal due to unauthenticated root folder settings change
Ecosystems: pypi
Packages: lollms
Source: GitHub Advisory Database
Blast Radius: 5.2
Published: 4 months ago
Moderate
GSA_kwCzR0hTQS03OWg4LWd4aHEtcTNqZ84AA9TI
Remote Code Execution in create_conda_env function in lollms
Ecosystems: pypi
Packages: lollms
Source: GitHub Advisory Database
Blast Radius: 4.1
Published: 4 months ago
Critical
GSA_kwCzR0hTQS1tdnJtLWZoOHEtNndyMs4AA9S_
Remote Code Execution via path traversal bypass in lollms
Ecosystems: pypi
Packages: lollms
Source: GitHub Advisory Database
Blast Radius: 5.9
Published: 4 months ago
Critical
GSA_kwCzR0hTQS12cXdyLXE2Y2MtYzI0Ms4AA89T
parisneo/lollms Local File Inclusion (LFI) attack
Ecosystems: pypi
Packages: lollms
Source: GitHub Advisory Database
Blast Radius: 5.5
Published: 4 months ago
High
GSA_kwCzR0hTQS0zeDQ3LXc0cngtNnBtN84AA8xw
LoLLMS Path Traversal vulnerability
Ecosystems: pypi
Packages: lollms
Source: GitHub Advisory Database
Blast Radius: 5.9
Published: 4 months ago
High
GSA_kwCzR0hTQS1wOGg3LWM4Z3ctNng4Y84AA8xF
LoLLMS Path Traversal vulnerability
Ecosystems: pypi
Packages: lollms
Source: GitHub Advisory Database
Blast Radius: 4.5
Published: 4 months ago
Moderate
GSA_kwCzR0hTQS05cDczLXg4NnYtanc1N84AA8mU
path traversal vulnerability was identified in the parisneo/lollms-webui
Ecosystems: pypi
Packages: lollms
Source: GitHub Advisory Database
Blast Radius: 2.4
Published: 5 months ago
High
GSA_kwCzR0hTQS1wd2M5LXE0aGotcGc4Z84AA8Ju
LoLLMS Command Injection vulnerability
Ecosystems: pypi
Packages: lollms
Source: GitHub Advisory Database
Blast Radius: 5.9
Published: 5 months ago
Statistics
Advisories: 20,344
Packages: 8,928
Repositories: 3
Ecosystems: 12
Filter by Package
tensorflow 433 tensorflow-gpu 425 tensorflow-cpu 422 Django 100 apache-airflow 84 Plone 65 ansible 63 salt 55 apache-superset 51 nova 47 mlflow 46 django 44 plone 43 rdiffweb 42 vyper 38 moin 35 matrix-synapse 35 gradio 32 opencv-python 31 Pillow 31 opencv-contrib-python 31 keystone 31 pillow 26 glance 20 mindsdb 18 langchain 18 mercurial 18 PaddlePaddle 17 cobbler 17 notebook 17 neutron 16 cryptography 16 ethyca-fides 15 pyload-ng 15 paddlepaddle 15 pyftpdlib 14 modoboa 14 vantage6 13 lollms 13 twisted 13 OctoPrint 13 wagtail 12 roundup 12 aiohttp 12 calibreweb 12 swift 12 urllib3 12 onionshare-cli 11 horizon 11 zenml 11 opencv-python-headless 10 opencv-contrib-python-headless 10 sentry 10 nautobot 10 Flask-AppBuilder 10 trytond 10 zope 9 kiwitcms 9 Zope 9 waitress 9 cinder 9 ryu 9 python-keystoneclient 9 label-studio 8 ipython 8 aubio 8 litellm 8 trac 8 ckan 8 pgadmin4 8 numpy 8 pysaml2 7 matrix-sydent 7 pyspark 7 lief 7 scrapy 7 pip 7 jupyter-server 7 Products.CMFPlone 7 inventree 7 aim 6 requests 6 Moin 6 web2py 6 tornado 6 graphite-web 6 mage-ai 6 Zope2 6 tuf 6 apache-airflow-providers-apache-hive 6 lxml 6 mailman 6 yt-dlp 6 omero-web 5 langchain-experimental 5 bleach 5 pretix 5 jupyterhub 5 saleor 5 oauthenticator 5 Jinja2 5 ait-core 5 whoogle-search 5 grpcio 5 nltk 5 python-gnupg 5 grpc 5 torchserve 5 lmdb 5 feedparser 5 dtale 5 paramiko 5 awsiotsdk 4 reportlab 4 dbt-core 4 httpie 4 werkzeug 4 tripleo-heat-templates 4 Scrapy 4 Flask-Security-Too 4 indico 4 Radicale 4 changedetection.io 4 transformers 4 FreeTAKServer-UI 4 mobsf 4 streamlit 4 bottle 4 Keystone 4 barbican 4 apache-submarine 4 buildbot 4 ansible-core 4 Nova 4 open-webui 4 esphome 4 jupyterlab 4 Werkzeug 4 software.amazon.awssdk.iotdevicesdk:aws-iot-device-sdk 4 aws-iot-device-sdk-v2 4 GitPython 4 PyPDF2 4 nvflare 4 indy-node 4 jwcrypto 4 apache-iotdb 4 Pygments 4 Weblate 4 qutebrowser 4 keylime 4 markdown2 4 starlette 4 django-tinymce 3 SQLAlchemy 3 llama-index 3 bitlyshortener 3 TinyMCE 3 tinymce/tinymce 3 tinymce 3 anki 3 langchain-community 3 setuptools 3 plone.app.event 3 pywasm3 3 torch 3 plone.app.theming 3 plone.app.dexterity 3 pandasai 3 plone.supermodel 3 keyring 3 h2o 3 sickrage 3 datasette 3 scikit-learn 3 mayan-edms 3 openvpn-monitor 3 ray 3 pycrypto 3 ydata-profiling 3 ecdsa 3 keystonemiddleware 3 micropython-copy 3 micropython-io 3 asyncssh 3 pyarrow 3 django-helpdesk 3 RestrictedPython 3 sqlparse 3 openstack-heat 3 slixmpp 3 python-jose 3 homeassistant 3 dulwich 3 vanna 3 sanic 3 mistune 3 mitmproxy 3 ujson 3 copyparty 3 octavia 3