CVE-2026-7847
- EPSS 0.24%
- Veröffentlicht 05.05.2026 17:17:05
- Zuletzt bearbeitet 05.05.2026 19:06:58
A vulnerability was found in chatchat-space Langchain-Chatchat up to 0.3.1.3. The affected element is the function _get_file_id of the file libs/chatchat-server/chatchat/server/api_server/openai_routes.py of the component Uploaded File Handler. Perfo...
CVE-2026-7844
- EPSS 0.32%
- Veröffentlicht 05.05.2026 16:16:19
- Zuletzt bearbeitet 05.05.2026 19:06:58
A vulnerability was detected in chatchat-space Langchain-Chatchat up to 0.3.1.3. This vulnerability affects the function files/list_files/retrieve_file/retrieve_file_content/delete_file of the file libs/chatchat-server/chatchat/server/api_server/open...
CVE-2026-7845
- EPSS 0.14%
- Veröffentlicht 05.05.2026 16:16:19
- Zuletzt bearbeitet 05.05.2026 20:16:41
A flaw has been found in chatchat-space Langchain-Chatchat up to 0.3.1.3. This issue affects the function PIL.Image.tobytes of the file libs/chatchat-server/chatchat/webui_pages/dialogue/dialogue.py of the component Vision Chat Paste Image Handler. T...
CVE-2026-7846
- EPSS 0.16%
- Veröffentlicht 05.05.2026 16:16:19
- Zuletzt bearbeitet 05.05.2026 19:06:58
A vulnerability has been found in chatchat-space Langchain-Chatchat up to 0.3.1.3. Impacted is the function files of the file libs/chatchat-server/chatchat/server/api_server/openai_routes.py of the component OpenAI-Compatible File Upload API. Such ma...
CVE-2025-6855
- EPSS 0.55%
- Veröffentlicht 29.06.2025 09:15:24
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability, which was classified as critical, has been found in chatchat-space Langchain-Chatchat up to 0.3.1. This issue affects some unknown processing of the file /v1/file. The manipulation of the argument flag leads to path traversal. The ex...
CVE-2025-6854
- EPSS 0.47%
- Veröffentlicht 29.06.2025 08:31:04
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability classified as problematic was found in chatchat-space Langchain-Chatchat up to 0.3.1. This vulnerability affects unknown code of the file /v1/files?purpose=assistants. The manipulation leads to path traversal. The attack can be initia...
CVE-2025-6853
- EPSS 0.48%
- Veröffentlicht 29.06.2025 07:31:05
- Zuletzt bearbeitet 29.04.2026 01:00:01
A vulnerability classified as critical has been found in chatchat-space Langchain-Chatchat up to 0.3.1. This affects the function upload_temp_docs of the file /knowledge_base/upload_temp_docs of the component Backend. The manipulation of the argument...