Skip to content
CriticalVulnerabilityLLM-specific

GHSA-r6gp-rff2-p3hf: llama-index-core Command Injection vulnerability

Published
Record updated
View JSON
Affected
  • llama-index-core < 0.10.24
Fixed in
0.10.24
Known exploitation
Not listed in the CISA Known Exploited Vulnerabilities catalog at the last check.
EPSS
2.9%

Summary

A command injection flaw in the safe_eval function of the run-llama/llama_index repository lets attackers bypass its check for underscores in LLM-generated code. Crafted input without an underscore can still run OS commands, enabling remote code execution on the server hosting the application.

Mitigation

The source does not state a fix yet. Check the original advisory for updates.