References https://cloud.tencent.com/developer/article/2607793 https://www.cnblogs.com/zhengna/p/19325696 https://forum.dify.ai/t/version-1-10-1/302 https://zhuanlan.zhihu.com/p/1986735185866298423 https://view.inews.qq.com/a/20251213A049WL00 https://github.com/langgenius/dify/issues/29219 https://www.53ai.com/news/dify/2025120519783.html https://news.qq.com/rain/a/20251205A05DCX00 https://zhuanlan.zhihu.com/p/1987200102469769208 https://github.com/langgenius/dify/issues/29277
Related VulnerabilitiesPoCdify-ssrf-remote-upload: Dify < 1.13.0 - Unauthenticated SSRF via Remote File UploadPoCCVE-2026-28288: Dify User Enumeration via Observable Response DiscrepancyDify /console/api/remote-files/ 服务器端请求伪造漏洞(CVE-2025-56520)Dify存在用户名枚举漏洞(CVE-2025-11750)PoCCVE-2025-56520: Dify v1.6.0 - Server-Side Request ForgeryPoCCVE-2025-63387: Dify v1.9.1 - Broken Access ControlDify /console/api/remote-files/upload 服务器端请求伪造漏洞western-digital-mycloud-multi-uploadify-file-upload: Western Digital MyCloud Multi Uploadify File UploadPoCweaver-lazyuploadify-file-upload: OA E-Office LazyUploadify - Arbitrary File UploadPoCweaver-uploadify-file-upload: OA E-Office Uploadify - Arbitrary File UploadPoCCVE-2025-11750: Dify - User Enumeration via "Account not found" MessageDify存在SSRF漏洞(CVE-2025-29720)