HIGH
Pandas Query Injection in langgenius/dify
Published Mar 20, 2025
8.8
HIGHCVSS 3.1
EPSS 1.10%
Description
A vulnerability in the Dify Tools' Vanna module of the langgenius/dify repository allows for a Pandas Query Injection in the latest version. The vulnerability occurs in the function `vn.get_training_plan_generic(df_information_schema)`, which does not properly sanitize user inputs before executing queries using the Pandas library. This can potentially lead to Remote Code Execution (RCE) if exploited.
Affected products
-
- Version unspecifiedStatusaffectedConstraints<=latest
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| Langgenius | Langgenius/dify | n/a |
|
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (1)
- https://huntr.com/bounties/7d9eb9b2-7b86-45ed-89bd-276c1350db7e exploitIssue TrackingThird Party Advisory
| Link | Providers | Tags |
|---|---|---|
| https://huntr.com/bounties/7d9eb9b2-7b86-45ed-89bd-276c1350db7e | exploitIssue TrackingThird Party Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner @huntr_ai
Published Mar 20, 2025
Updated Mar 20, 2025
Reserved Jan 2, 2025
Link CVE-2025-0185
CISA Vulnrichment
Updated Mar 20, 2025