chatchat-space CVE Vulnerabilities & CVE List (3)

Products (CPE): — CVEs: 3

chatchat-space vulnerability overview

Aggregates CVE and security vulnerability intelligence across all chatchat-space-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk path handling and related problems; some flaws may lead to vendor impact file overwrite, affecting vendor surface software deployment scenarios.

Vulnerability distribution trend (last 24 months)

Showing 13 of 3 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2025-6855 A vulnerability, which was classified as critical, has been found in chatchat-space Langchain-Chatchat up to 0.3.1. This issue affects some unknown processing of the file /v1/file. The manipulation of the argument flag leads to path traversal. The exploit has been disclosed to the public and may be used. [email protected] 2.0 0.69% 2025-06-29 2026-04-29
CVE-2025-6854 A vulnerability classified as problematic was found in chatchat-space Langchain-Chatchat up to 0.3.1. This vulnerability affects unknown code of the file /v1/files?purpose=assistants. The manipulation leads to path traversal. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. [email protected] 2.1 0.50% 2025-06-29 2026-04-29
CVE-2025-6853 A vulnerability classified as critical has been found in chatchat-space Langchain-Chatchat up to 0.3.1. This affects the function upload_temp_docs of the file /knowledge_base/upload_temp_docs of the component Backend. The manipulation of the argument flag leads to path traversal. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. [email protected] 2.1 0.63% 2025-06-29 2026-04-29
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence