Mintplexlabs

    Dashboard / Vendors

    Products: 6
    Vulnerabilities: 73
    Known Exploited: 0
    10
    Critical Level Threats
    34
    High Level Threats
    24
    Medium Level Threats
    5
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-72917

    AnythingLLM: Password recovery accepts one recovery code twice after whitespace normalization

    Last Modified: Aug 12, 2026
    Published: Aug 10, 2026

    CVE-2026-55611

    AnythingLLM: embed-parsed-file cleanup deletes any parsed file by ID without ownership scoping (cross-tenant IDOR deletion)

    Last Modified: Jun 25, 2026
    Published: Jun 24, 2026

    CVE-2026-48789

    AnythingLLM: Windows path containment bypass in document folder route

    Last Modified: Jun 25, 2026
    Published: Jun 24, 2026

    CVE-2026-47713

    AnythingLLM: Legacy mobile device tokens bypass multi-user workspace scoping after mode migration

    Last Modified: Jun 03, 2026
    Published: May 28, 2026

    CVE-2026-48116

    AnythingLLM: RCE via ripgrep --pre argument injection in filesystem-search-files agent skill

    Last Modified: May 30, 2026
    Published: May 28, 2026
    Items Per Page