CVE-2024-8196
Published Mar 20, 2025In mintplex-labs/anything-llm v1.5.11 desktop version for Windows, the application opens server port 3001 on 0.0.0.0 with no authentication by default. This vulnerability allows a…
Vendor/product archive
2 CVEs tagged to mintplexlabs / anythingllm_desktop — 2 Critical, 0 High, 0 Medium, 0 Low, 0 Unrated.
In mintplex-labs/anything-llm v1.5.11 desktop version for Windows, the application opens server port 3001 on 0.0.0.0 with no authentication by default. This vulnerability allows a…
A Cross-Site Scripting (XSS) vulnerability exists in mintplex-labs/anything-llm, affecting both the desktop application version 1.2.0 and the latest version of the web application…