#arbitrary-file-read

[ follow ]
#chainlit
fromThe Hacker News
1 week ago
Information security

Chainlit AI Framework Flaws Enable Data Theft via File Read and SSRF Bugs

Critical Chainlit (ChainLeak) vulnerabilities enable arbitrary file reads and SSRF, risking cloud API key exposure, sensitive file theft, privilege escalation, and lateral movement.
fromTheregister
1 week ago
Information security

AI framework flaws put enterprise clouds at risk of takeover

Two Chainlit vulnerabilities enable arbitrary file reads and SSRF attacks, risking exposure of environment variables, credentials, and potential cloud takeover if not patched.
[ Load more ]