Timothy Carambat
41 exploits
Active since Sep 2023
AnythingLLM: filesystem-copy-file follows nested symlinks and copies files from outside the allowed directory
CVSS 2.0
AnythingLLM: Legacy mobile device tokens bypass multi-user workspace scoping after mode migration
CVSS 2.0
AnythingLLM: RCE via ripgrep --pre argument injection in filesystem-search-files agent skill
CVSS 7.5
AnythingLLM: Cross-User TTS Audio Disclosure via Chat ID (IDOR)
CVSS 4.3
AnythingLLM < 1.12.1 - Stored DOM XSS in Chart Caption Renderer
CVSS 5.4
Path Traversal in mintplex-labs/anything-llm
CVSS 7.2
AnythingLLM has SQL Injection in Built-in SQL Agent Plugin via Unsanitized table_name Parameter
CVSS 8.8
AnythingLLM Manager Privilege Bypass Allows Access to Admin-Only System Preferences
CVSS 3.8
AnythingLLM access control bypass: suspended users can continue using Browser Extension API keys
CVSS 2.7
AnythingLLM <=1.11.1 Plugin Import - Zip Slip Code Execution
CVSS 4.2
AnythingLLM Desktop <=1.11.1 - XSS to RCE
CVSS 9.6
mintplex-labs/anything-llm <0.0.1 - Path Traversal
CVSS 9.8
mintplex-labs/anything-llm <0.0.1 - Auth Bypass
CVSS 7.5
mintplex-labs/anything-llm <0.0.1 - SQL Injection
CVSS 8.8
AnythingLLM < 0.1.0 - Improper Input Validation
CVSS 9.1
AnythingLLM < 0.1.0 - Improper Access Control
CVSS 8.8
Mintplex-Labs Anything-LLM - Privilege Escalation
CVSS 9.1
AnythingLLM - Stored Cross-Site Scripting in Chat Message Renderer
CVSS 5.4
AnythingLLM < 1.0.0 - Timing Attack via Password Comparison
CVSS 5.9
AnythingLLM < 1.0.0 - Improper Privilege Management via HTTP Request
CVSS 8.8
Mintplexlabs AnythingLLM - Server-Side Request Forgery
CVSS 6.5
AnythingLLM - Authenticated Server-Side Request Forgery via Web Scraper URL Parameter
CVSS 7.5
mintplex-labs/anything-llm - Path Traversal
CVSS 8.1
AnythingLLM - Manager-Level Server-Side Request Forgery via Link Scraper
CVSS 7.5
AnythingLLM < 1.0.0 - Authenticated Path Traversal and Arbitrary Folder Deletion
CVSS 8.1