VendorsInfiniFlowragflowall versions
Vulnerabilities

InfiniFlow RAGFlow

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

16CVEs
CVE-2024-12433
Remote Code Execution in infiniflow/ragflow
Published 2025-03-20 · Analyzed
9.8EPSS 0.017
CVE-2026-24770
RAGFlow Affected by Zip Slip Remote Code Execution (RCE) in MinerUParser
Published 2026-01-27 · Analyzed
9.8EPSS 0.014
CVE-2024-12450
RCE, Full Read SSRF, and Arbitrary File Read in infiniflow/ragflow
Published 2025-03-20 · Modified
9.8EPSS 0.013
CVE-2025-69286
RAGFlow has Predictable Token Generation Leading to Authentication Bypass Vulnerability
Published 2025-12-31 · Analyzed
9.8EPSS 0.008
CVE-2025-27135
RAGFlow SQL Injection vulnerability
Published 2025-02-25 · Analyzed
9.8EPSS 0.006
CVE-2025-48187
RAGFlow through 0.18.1 allows account takeover because it is possible to conduct successful brute-force attacks against email verification codes to perform arbitrary account registration, login, and password reset. Codes are six digits and there is no rate limiting.
Published 2025-05-17 · Analyzed
9.8EPSS 0.005
CVE-2024-10131
Remote Code Execution in infiniflow/ragflow
Published 2024-10-19 · Modified
8.8EPSS 0.011
CVE-2025-68700
RAGFlow Remote Code Execution Vulnerability
Published 2025-12-31 · Analyzed
8.8EPSS 0.007
CVE-2026-28797
RAGFlow: Server-Side Template Injection (SSTI) leading to Remote Code Execution (RCE) in Agent "Text Processing" Component
Published 2026-04-03 · Analyzed
8.8EPSS 0.006
CVE-2024-12880
Partial Account Takeover due to Insecure Data Querying in infiniflow/ragflow
Published 2025-03-20 · Modified
8.1EPSS 0.007
CVE-2025-25282
Potential Insecure Direct Object Reference (IDOR) vulnerability in ragflow
Published 2025-02-21 · Analyzed
8.1EPSS 0.005
CVE-2024-12779
SSRF in infiniflow/ragflow
Published 2025-03-20 · Analyzed
7.5EPSS 0.006
CVE-2024-53450
RAGFlow 0.13.0 suffers from improper access control in document-hooks.ts, allowing unauthorized access to user documents.
Published 2024-12-09 · Analyzed
7.5EPSS 0.005
CVE-2025-51462
Stored Cross-site Scripting (XSS) vulnerability in api.apps.dialog_app.set_dialog in RAGFlow 0.17.2 allows remote attackers to execute arbitrary JavaScript via crafted input to the assistant greeting field, which is stored unsanitised and rendered using a markdown component with rehype-raw.
Published 2025-07-22 · Analyzed
6.1EPSS 0.003
CVE-2024-12871
Stored Cross-site Scripting (XSS) in infiniflow/ragflow
Published 2025-03-20 · Analyzed
5.4EPSS 0.004
CVE-2024-12869
Improper Authentication in infiniflow/ragflow
Published 2025-03-20 · Modified
4.3EPSS 0.005