VYPR

dify

by Dify.ai

Source repositories

CVEs (8)

  • CVE-2025-63388CriDec 18, 2025
    risk 0.59cvss 9.1epss 0.00

    A Cross-Origin Resource Sharing (CORS) misconfiguration vulnerability exists in Dify v1.9.1 in the /console/api/system-features endpoint. The endpoint implements an overly permissive CORS policy that reflects arbitrary Origin headers and sets Access-Control-Allow-Credentials:…

  • CVE-2025-67732MedJan 5, 2026
    risk 0.42cvss 6.5epss 0.00

    Dify is an open-source LLM app development platform. Prior to version 1.11.0, the API key is exposed in plaintext to the frontend, allowing non-administrator users to view and reuse it. This can lead to unauthorized access to third-party services, potentially consuming limited…

  • CVE-2025-56520MedSep 30, 2025
    risk 0.35cvss 5.3epss 0.01

    Dify v1.6.0 was discovered to contain a Server-Side Request Forgery (SSRF) via the component controllers.console.remote_files.RemoteFileUploadApi. A different vulnerability than CVE-2025-29720.

  • CVE-2025-29720MedApr 14, 2025
    risk 0.31cvss 4.8epss 0.00

    Dify v1.0 was discovered to contain a Server-Side Request Forgery (SSRF) via the component controllers.console.remote_files.RemoteFileUploadApi.

  • CVE-2025-63387HigDec 18, 2025
    risk 0.02cvss 7.5epss 0.28

    Dify v1.9.1 is vulnerable to Insecure Permissions. An unauthenticated attacker can directly send HTTP GET requests to the /console/api/system-features endpoint without any authentication credentials or session tokens. The endpoint fails to implement proper authorization checks,…

  • CVE-2025-63386CriDec 18, 2025
    risk 0.00cvss 9.1epss 0.00

    A Cross-Origin Resource Sharing (CORS) misconfiguration vulnerability exists in Dify v1.9.1 in the /console/api/setup endpoint. The endpoint implements an insecure CORS policy that reflects any Origin header and enables Access-Control-Allow-Credentials: true, permitting…

  • CVE-2025-58747MedOct 17, 2025
    risk 0.00cvss 6.1epss 0.05

    Dify is an LLM application development platform. In Dify versions through 1.9.1, the MCP OAuth component is vulnerable to cross-site scripting when a victim connects to an attacker-controlled remote MCP server. The vulnerability exists in the OAuth flow implementation where the…

  • CVE-2025-59422LowSep 25, 2025
    risk 0.00cvss 3.1epss 0.00

    Dify is an open-source LLM app development platform. In version 1.8.1, a broken access control vulnerability on the /console/api/apps/<APP_ID>chat-messages?conversation_id=<CONVERSATION_ID>&limit=10 endpoint allows users in the same workspace to read chat messages of other…