References https://nvd.nist.gov/vuln/detail/CVE-2024-4322 https://pentest-tools.com/vulnerabilities-exploits/lollms-webui-98-path-traversal_29286 https://github.com/advisories/GHSA-482r-2hv2-p3x7 https://huntr.com/bounties/5116d858-ce00-418c-a5a5-851c5608c209 https://cve.imfht.com/detail/CVE-2024-4322?lang=en https://s4e.io/tools/lollms-webui-path-traversal-cve-2024-4322
Related VulnerabilitiesPoCCVE-2026-58123: Hermes WebUI < 0.51.788 - Remote Code ExecutionPoCCVE-2026-0558: LolLMS <= 2.2.0 - Unauthenticated File UploadPoCCVE-2026-1115: parisneo/lollms < 2.2.0 - Authenticated Stored XSSOpen WebUI /api/v1/retrieval/process/web 服务器端请求伪造漏洞(CVE-2026-70485)PoCNginxWebUI /adminPage/login/getAuth 命令执行漏洞PoCNginxWebUI /Adminpage/Conf/loadOrg 文件读取漏洞NginxWebUI /Api/Nginx/runNginxCmd 命令执行漏洞NginxWebUI /Adminpage/Remote/cmdOver 命令执行漏洞PoCCVE-2026-44551: Open WebUI 'LDAP Empty Password' - Authentication BypassPoCCVE-2026-45397: Open WebUI < 0.9.5 - Information DisclosureOpen WebUI /api/v1/retrieval/ 信息泄露漏洞(CVE-2026-45397)Open WebUI存在信息泄露(CVE-2026-45397)PoCCVE-2024-4322: LoLLMS WebUI < 9.8 - Path Traversal