Products: 6
Vulnerabilities: 73
Known Exploited: 0
10
Critical Level Threats
34
High Level Threats
24
Medium Level Threats
5
Low Level Threats
Vulnerabilities
100806040200
JanFebMarAprMayJunJulAugSepOctNovDec
Critical Level Threats
High Level Threats
Medium Level Threats
Low Level Threats
Products Security index
Actions
Items Per Page
Vulnerabilities
CVE-2026-72917
AnythingLLM: Password recovery accepts one recovery code twice after whitespace normalization
Last Modified: Aug 12, 2026
Published: Aug 10, 2026
CVE-2026-55611
AnythingLLM: embed-parsed-file cleanup deletes any parsed file by ID without ownership scoping (cross-tenant IDOR deletion)
Last Modified: Jun 25, 2026
Published: Jun 24, 2026
CVE-2026-48789
AnythingLLM: Windows path containment bypass in document folder route
Last Modified: Jun 25, 2026
Published: Jun 24, 2026
CVE-2026-47713
AnythingLLM: Legacy mobile device tokens bypass multi-user workspace scoping after mode migration
Last Modified: Jun 03, 2026
Published: May 28, 2026
CVE-2026-48116
AnythingLLM: RCE via ripgrep --pre argument injection in filesystem-search-files agent skill
Last Modified: May 30, 2026
Published: May 28, 2026
Items Per Page
