Vulnerabilities

ID
Packages
Summary
Published
arrow_upward
Attributes
GHSA-8ffj-4hx4-9pgf
  • PyPI/lightrag-hku
lightrag-hku: JWT Algorithm Confusion Vulnerability 08 Apr
  • Fix available
  • Severity - 4.2 (Medium)
GHSA-mcww-4hxq-hfr3
  • PyPI/lightrag-hku
LightRAG: Hardcoded JWT Signing Secret Allows Authentication Bypass 04 Apr
  • Fix available
  • Severity - 7.5 (High)
GHSA-v9w6-9hq9-33ch
  • PyPI/lightrag-hku
HKUDS LightRAG allows Path Traversal via function upload_to_input_dir 27 Jun 2025
  • Fix available
  • Severity - 4.8 (Medium)