Mintplexlabs Security Vulnerabilities (CVE)
Explore vulnerabilities and security advisories affecting Mintplexlabs products.
2 known CVE vulnerabilities tracked
Vulnerabilities By Year
Products Affected
All Mintplexlabs CVEs
AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. Prior to 1.13.0, the filesystem-search-files agent skill passes its LLM-controlled pattern parameter to ripgrep as a positional argument without a -- end-of-options separator.
An authentication bypass vulnerability exists in AnythingLLM v1.8.5 in via the /api/workspaces endpoint. The endpoint fails to implement proper authentication checks, allowing unauthenticated remote attackers to enumerate and retrieve detailed information about all configured workspaces. Exposed dat