Dify
Langgenius · 44 CVEs
Dify: Unauthenticated Server-Side Request Forgery in /console/api/remote-files/upload endpoint
Oct 5, 2026
Dify: IDOR in AppMCPServer PUT Endpoint Allows Modification of Other Apps' MCP Servers
Oct 5, 2026
langgenius dify WebApp Sign-In mail-and-password-auth.tsx router.replace cross site scripting
Sep 3, 2026
langgenius dify Splash Layout splash.tsx router.replace cross site scripting
Sep 3, 2026
langgenius dify Jinja2 jinja2_transformer.py jinja2.Template special elements used in a template engine
Aug 3, 2026
Dify AI Workflow oauth_redirect_url Open Redirect Vulnerability
Jul 29, 2026
Dify < 1.16.0-rc1 SQL Injection via MyScale Vector Store search_by_full_text
Jul 10, 2026
Dify < 1.14.2 Authorization Bypass via File Preview Endpoint
May 18, 2026
Dify v1.14.1 Path Traversal via Plugin Daemon Internal API Access
May 18, 2026
Dify < 1.14.2 Authorization Bypass via Trace Configuration Endpoints
May 18, 2026
Dify < 1.14.0 Authorization Bypass via File UUID
May 5, 2026
Dify Vulnerable to Stored XSS via SVG-file upload
May 4, 2026
Dify has IDOR in deleting someone else's chat conversation
Apr 20, 2026
langgenius dify ImagePreview image-preview.tsx openInNewTab cross site scripting
Apr 20, 2026
langgenius dify ApiBasedToolSchemaParser parser.py parse_openai_plugin_json_to_tool_bundle server-side request forgery
Apr 20, 2026
langgenius dify ApiToolManageService api_tools_manage_service.py get_api_tool_provider_remote_schema server-side reques…
Apr 20, 2026
Dify - Stored XSS in chat
Mar 3, 2026
Dify has a user enumeration issue
Feb 27, 2026
Client‑side DOM XSS in the web chat app of Dify when using echarts
Feb 11, 2026
Dify Vulnerable to Plaintext API Key Exposure via Model Provider Configuration Endpoint
Jan 5, 2026
Dify v1.9.1 is vulnerable to Insecure Permissions. An unauthenticated attacker can directly send HTTP GET requests to t…
Dec 18, 2025
A Cross-Origin Resource Sharing (CORS) misconfiguration vulnerability exists in Dify v1.9.1 in the /console/api/system-…
Dec 18, 2025
A Cross-Origin Resource Sharing (CORS) misconfiguration vulnerability exists in Dify v1.9.1 in the /console/api/setup e…
Dec 18, 2025
Default credentials in Dify thru 1.5.1. PostgreSQL username and password specified in the docker-compose.yaml file incl…
Dec 18, 2025
User Enumeration via Distinct Error Messages in langgenius/dify-web
Oct 22, 2025
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2026-105762 | Dify: Unauthenticated Server-Side Request Forgery in /console/api/remote-files/upload endpoint | HIGH | 0.34% | Oct 5, 2026 |
| CVE-2026-105761 | Dify: IDOR in AppMCPServer PUT Endpoint Allows Modification of Other Apps' MCP Servers | HIGH | 0.25% | Oct 5, 2026 |
| CVE-2026-85022 | langgenius dify WebApp Sign-In mail-and-password-auth.tsx router.replace cross site scripting | MEDIUM | 0.36% | Sep 3, 2026 |
| CVE-2026-85021 | langgenius dify Splash Layout splash.tsx router.replace cross site scripting | MEDIUM | 0.50% | Sep 3, 2026 |
| CVE-2026-18632 | langgenius dify Jinja2 jinja2_transformer.py jinja2.Template special elements used in a template engine | MEDIUM | 0.39% | Aug 3, 2026 |
| CVE-2026-18266 | Dify AI Workflow oauth_redirect_url Open Redirect Vulnerability | MEDIUM | 0.29% | Jul 29, 2026 |
| CVE-2026-61461 | Dify < 1.16.0-rc1 SQL Injection via MyScale Vector Store search_by_full_text | HIGH | 0.50% | Jul 10, 2026 |
| CVE-2026-41949 | Dify < 1.14.2 Authorization Bypass via File Preview Endpoint | HIGH | 0.57% | May 18, 2026 |
| CVE-2026-41948 | Dify v1.14.1 Path Traversal via Plugin Daemon Internal API Access | CRITICAL | 1.89% | May 18, 2026 |
| CVE-2026-41947 | Dify < 1.14.2 Authorization Bypass via Trace Configuration Endpoints | CRITICAL | 0.60% | May 18, 2026 |
| CVE-2026-41950 | Dify < 1.14.0 Authorization Bypass via File UUID | MEDIUM | 0.47% | May 5, 2026 |
| CVE-2026-42138 | Dify Vulnerable to Stored XSS via SVG-file upload | MEDIUM | 0.34% | May 4, 2026 |
| CVE-2026-34082 | Dify has IDOR in deleting someone else's chat conversation | MEDIUM | 0.27% | Apr 20, 2026 |
| CVE-2026-6619 | langgenius dify ImagePreview image-preview.tsx openInNewTab cross site scripting | MEDIUM | 0.33% | Apr 20, 2026 |
| CVE-2026-6618 | langgenius dify ApiBasedToolSchemaParser parser.py parse_openai_plugin_json_to_tool_bundle server-side request forgery | MEDIUM | 0.35% | Apr 20, 2026 |
| CVE-2026-6617 | langgenius dify ApiToolManageService api_tools_manage_service.py get_api_tool_provider_remote_schema server-side request forgery | MEDIUM | 0.35% | Apr 20, 2026 |
| CVE-2026-21866 | Dify - Stored XSS in chat | MEDIUM | 0.23% | Mar 3, 2026 |
| CVE-2026-28288 | Dify has a user enumeration issue | MEDIUM | 0.71% | Feb 27, 2026 |
| CVE-2026-26023 | Client‑side DOM XSS in the web chat app of Dify when using echarts | MEDIUM | 0.36% | Feb 11, 2026 |
| CVE-2025-67732 | Dify Vulnerable to Plaintext API Key Exposure via Model Provider Configuration Endpoint | HIGH | 0.35% | Jan 5, 2026 |
| CVE-2025-63387 | Dify v1.9.1 is vulnerable to Insecure Permissions. An unauthenticated attacker can directly send HTTP GET requests to the /console/api/system-features endpoint… | HIGH | 29.93% | Dec 18, 2025 |
| CVE-2025-63388 | A Cross-Origin Resource Sharing (CORS) misconfiguration vulnerability exists in Dify v1.9.1 in the /console/api/system-features endpoint. The endpoint implemen… | CRITICAL | 0.22% | Dec 18, 2025 |
| CVE-2025-63386 | A Cross-Origin Resource Sharing (CORS) misconfiguration vulnerability exists in Dify v1.9.1 in the /console/api/setup endpoint. The endpoint implements an inse… | CRITICAL | 0.24% | Dec 18, 2025 |
| CVE-2025-56157 | Default credentials in Dify thru 1.5.1. PostgreSQL username and password specified in the docker-compose.yaml file included in its source code. NOTE: the Suppl… | CRITICAL | 0.86% | Dec 18, 2025 |
| CVE-2025-11750 | User Enumeration via Distinct Error Messages in langgenius/dify-web | MEDIUM | 0.70% | Oct 22, 2025 |
Showing 1 to 25 of 44 CVEs