llama-index has 7 CVEs on record between 2024 and 2025. The median CVSS is 7.5 (high), with 2 rated critical. None have a confirmed exploitation report.
CVEs per month
Last 12 months, by publish date
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 7.5
- Publish → KEV
- —
- Last 90 days
- 0 prev 0
Products
- llama-index 7
Worst active — by depth score
CVE-2025-1793Critical· 9.8llama_index vulnerable to SQL Injection54CVE-2025-1750Critical· 9.8An SQL injection vulnerability exists in the delete function of DuckDBVectorStore in run-llama/llama_index version v0.12.19. This vulnera…54CVE-2024-4181High· 8.8RunGptLLM class in LlamaIndex has a command injection49CVE-2025-1752High· 7.5LlamaIndex Vulnerable to Denial of Service (DoS)41CVE-2025-7707High· 7.1llama-index has Insecure Temporary File39
llama-index vulnerabilities
CVEs affecting llama-index, newest first. Open any entry for full detail, references, and exploit status.
7 CVEsRSS
CVE-2025-7707High· 7.1llama-index has Insecure Temporary File
llama-index has Insecure Temporary File
CVE-2025-6211Medium· 6.5LlamaIndex vulnerable to data loss through hash collisions in its DocugamiReader class
LlamaIndex vulnerable to data loss through hash collisions in its DocugamiReader class
CVE-2025-1793Critical· 9.8llama_index vulnerable to SQL Injection
llama_index vulnerable to SQL Injection
CVE-2025-1750Critical· 9.8An SQL injection vulnerability exists in the delete function of DuckDBVectorStore in run-llama/llama_index version v0.12.19. This vulnera…
An SQL injection vulnerability exists in the delete function of DuckDBVectorStore in run-llama/llama_index version v0.12.19. This vulnerability allows an attacker to manipulate the ref_doc_id parameter, enabling them to read and write ar…
CVE-2025-1752High· 7.5LlamaIndex Vulnerable to Denial of Service (DoS)
LlamaIndex Vulnerable to Denial of Service (DoS)
CVE-2024-12911High· 7.1LlamaIndex vulnerable to Creation of Temporary File in Directory with Insecure Permissions
LlamaIndex vulnerable to Creation of Temporary File in Directory with Insecure Permissions
CVE-2024-4181High· 8.8RunGptLLM class in LlamaIndex has a command injection
RunGptLLM class in LlamaIndex has a command injection