Ragflow
20 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Ragflow. Use it to gauge the current risk picture and drill into individual advisories.
Ragflow CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 1 |
| 2024-11 | 0 |
| 2024-12 | 1 |
| 2025-01 | 0 |
| 2025-02 | 2 |
| 2025-03 | 6 |
| 2025-04 | 0 |
| 2025-05 | 1 |
| 2025-06 | 0 |
| 2025-07 | 1 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 2 |
| 2026-01 | 1 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 1 |
| 2026-05 | 1 |
| 2026-06 | 0 |
| 2026-07 | 1 |
| 2026-08 | 1 |
| 2026-09 | 1 |
Severity
How the 20 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical7
- High7
- Medium6
Latest CVEs
The 15 most recently published vulnerabilities affecting Ragflow.
- CVE-2026-93013RAGFlow through 0.27.2 Tenant Import Endpoints Path Traversal4.3
- CVE-2026-75898RAGFlow < 0.26.3 - Server-Side Request Forgery via Agent Invoke Component8.5
- CVE-2026-58579RAGFlow < 0.26.3 - Stored Cross-Site Scripting via Agent Pipeline Node Name5.4
- CVE-2026-45312RAGFlow: Server-Side Template Injection in Prompt Generator leads to Remote Code Execution9.9
- CVE-2026-28797RAGFlow: Server-Side Template Injection (SSTI) leading to Remote Code Execution (RCE) in Agent "Text Processing" Component8.8
- CVE-2026-24770RAGFlow Affected by Zip Slip Remote Code Execution (RCE) in MinerUParser9.8
- CVE-2025-69286RAGFlow has Predictable Token Generation Leading to Authentication Bypass Vulnerability9.8
- CVE-2025-68700RAGFlow Remote Code Execution Vulnerability8.8
- CVE-2025-51462Stored Cross-site Scripting (XSS) vulnerability in api.apps.dialog_app.set_dialog in RAGFlow 0.17.2 allows remote attackers to execute arbitrary JavaScript via crafted input to the assistant greeti...6.1
- CVE-2025-48187RAGFlow through 0.18.1 allows account takeover because it is possible to conduct successful brute-force attacks against email verification codes to perform arbitrary account registration, login, an...9.1
- CVE-2024-12779SSRF in infiniflow/ragflow7.5
- CVE-2024-12869Improper Authentication in infiniflow/ragflow4.3
- CVE-2024-12871Stored Cross-site Scripting (XSS) in infiniflow/ragflow5.4
- CVE-2024-12450RCE, Full Read SSRF, and Arbitrary File Read in infiniflow/ragflow9.8
- CVE-2024-12433Remote Code Execution in infiniflow/ragflow9.8
Product grouping is registry-driven, with AI assist and human review. How it works