-LAN-
4 exploits
Active since Sep 2025
Dify v1.14.1 Authorization Bypass via Trace Configuration Endpoints
CVSS 9.1
Dify v1.14.1 Authorization Bypass via File Preview Endpoint
CVSS 5.9
Dify < 1.11.2 - Stored Cross-Site Scripting via Mermaid Diagram Rendering
CVSS 5.4
Dify 1.8.1 - Improper Access Control via Chat Messages Endpoint
CVSS 3.1