VYPR

Llama Stack

Sign in to watch

by Llamastack

Source repositories

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2025-55178Med0.275.30.00Sep 24, 2025Llama Stack prior to version v0.2.20 accepted unverified parameters in the resolve_ast_by_type function which could potentially allow for remote code execution.
CVE-2026-25211Low0.143.20.00Jan 30, 2026Llama Stack (aka llama-stack) before 0.4.0rc3 does not censor the pgvector password in the initialization log.