VYPR

Lord Of Large Language Models

by Lollms

CVEs (1)

  • CVE-2024-6581CriOct 29, 2024
    risk 0.52cvss 9.0epss 0.01

    A vulnerability in the discussion image upload function of the Lollms application, version v9.9, allows for the uploading of SVG files. Due to incomplete filtering in the sanitize_svg function, this can lead to cross-site scripting (XSS) vulnerabilities, which in turn pose a…