Skip to main content

CVE-2025-6855: Path Traversal in chatchat-space Langchain-Chatchat

Medium
VulnerabilityCVE-2025-6855cvecve-2025-6855
Published: Sun Jun 29 2025 (06/29/2025, 09:00:15 UTC)
Source: CVE Database V5
Vendor/Project: chatchat-space
Product: Langchain-Chatchat

Description

A vulnerability, which was classified as critical, has been found in chatchat-space Langchain-Chatchat up to 0.3.1. This issue affects some unknown processing of the file /v1/file. The manipulation of the argument flag leads to path traversal. The exploit has been disclosed to the public and may be used.

Technical Details

Data Version
5.1
Assigner Short Name
VulDB
Date Reserved
2025-06-28T10:38:00.820Z
Cvss Version
4.0
State
PUBLISHED

Threat ID: 686102d26f40f0eb727b899a

Added to database: 6/29/2025, 9:09:38 AM

Last updated: 6/29/2025, 9:09:38 AM

Views: 1

Actions

Please log in to the Console to use AI analysis features.

Need enhanced features?

Contact root@offseq.com for Pro access with improved analysis and higher rate limits.

Latest Threats