High severity7.5NVD Advisory· Published Mar 20, 2025· Updated Jun 17, 2026
CVE-2024-10225
CVE-2024-10225
Description
A vulnerability in haotian-liu/llava v1.2.0 allows an attacker to cause a Denial of Service (DoS) by appending a large number of characters to the end of a multipart boundary in a file upload request. This causes the server to continuously process each character, rendering the application inaccessible.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2=1.2.0+ 1 more
- (no CPE)range: =1.2.0
- (no CPE)range: unspecified
Patches
Vulnerability mechanics
References
1- huntr.com/bounties/cd793f83-f122-432b-83e7-1cc8c78817b7nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.