Known Vulnerabilities for Llamaindex by Llamaindex Project
Listed below are 1 of the newest known vulnerabilities associated with "Llamaindex" by "Llamaindex Project".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2024-58339 json | LlamaIndex (run-llama/llama_index) versions up to and including 0.12.2 contain an uncontrolled resource consumption vulnerabi... | Not Provided | 2026-01-12 | 2026-07-14 |
| CVE-2024-14021 json | LlamaIndex (run-llama/llama_index) versions up to and including 0.11.6 contain an unsafe deserialization vulnerability in BGE... | Not Provided | 2026-01-12 | 2026-07-14 |
| CVE-2023-39662 json | An issue in llama_index v.0.7.13 and before allows a remote attacker to execute arbitrary code via the `exec` parameter in Pa... | 9.8 - CRITICAL | 2023-08-15 | 2023-08-22 |