AnythingLLM API Sensitive Information Disclosure
Discription

AnythingLLM suffers from an information disclosure vulnerability through the /api/setup-complete API endpoint. By accessing this endpoint, a remote and unauthenticated attacker can access sensitive configuration of the target AnythingLLM…Read More

Back to Main

Subscribe for the latest news: