Skip to content
HighVulnerability

GHSA-cr7q-2w66-hjcm: llama-index-core insecurely handles temporary files

Published
Record updated
View JSON
Affected
  • llama-index-core < 0.13.0
Fixed in
0.13.0
Known exploitation
Not listed in the CISA Known Exploited Vulnerabilities catalog at the last check.
EPSS
0.1%

Summary

The llama-index-core package, up to version 0.12.44, uses a predictable, hardcoded directory path, /tmp/llama_index, in its get_cache_dir() function on Linux systems without proper security controls. On multi-user Linux systems, attackers can steal proprietary models, poison cached embeddings, or conduct symlink attacks. The flaw is classified under CWE-379, CWE-377, and CWE-367.

Mitigation

The source does not state a fix yet. Check the original advisory for updates.