Medium severity5.3NVD Advisory· Published Mar 20, 2025· Updated Jun 17, 2026
CVE-2024-10047
CVE-2024-10047
Description
parisneo/lollms-webui versions v9.9 to the latest are vulnerable to a directory listing vulnerability. An attacker can list arbitrary directories on a Windows system by sending a specially crafted HTTP request to the /open_file endpoint.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
1- huntr.com/bounties/69c3a27c-bd93-4aff-a46b-56798f28a3cenvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.