VulnSea

llama-index-core has 7 CVEs on record between 2025 and 2026. The median CVSS is 7.3 (high). None have a confirmed exploitation report.

CVEs per month

Last 12 months, by publish date

101112010203040506070809
Exploited share
0% vs 1% corpus
Median CVSS
7.3
Publish → KEV
—
Last 90 days
0 prev 0

Products

  • llama-index-core 7
7
Total CVEs
0
Critical
0
CISA KEV
0
Exploited

llama-index-core vulnerabilities

CVEs affecting llama-index-core, newest first. Open any entry for full detail, references, and exploit status.

7 CVEsRSS

CVE-2025-6208Medium· 5.3
7mo ago

llama-index-core vulnerable to Uncontrolled Resource Consumption

llama-index-core vulnerable to Uncontrolled Resource Consumption

▾ Sunlitllama-index-core · llama-index-coreEPSS 0.39%via OSV
CVE-2025-7647High· 7.3
12mo ago

llama-index-core insecurely handles temporary files

llama-index-core insecurely handles temporary files

▾ Twilightllama-index-core · llama-index-coreEPSS 0.15%via OSV
CVE-2025-5302High· 8.6
1y ago

LlamaIndex affected by a Denial of Service (DOS) in JSONReader

LlamaIndex affected by a Denial of Service (DOS) in JSONReader

▾ Twilightllama-index-core · llama-index-coreEPSS 0.29%via OSV
CVE-2025-3108Medium· 5.0
1y ago

LlamaIndex has Incomplete Documentation of Program Execution related to JsonPickleSerializer component

LlamaIndex has Incomplete Documentation of Program Execution related to JsonPickleSerializer component

▾ Sunlitllama-index-core · llama-index-coreEPSS 0.43%via OSV
CVE-2025-5472Medium· 6.5
1y ago

LlamaIndex vulnerable to DoS attack through uncontrolled recursive JSON parsing

LlamaIndex vulnerable to DoS attack through uncontrolled recursive JSON parsing

▾ Sunlitllama-index-core · llama-index-coreEPSS 0.34%via OSV
CVE-2025-6209High· 7.5
1y ago

LlamaIndex vulnerable to Path Traversal attack through its encode_image function

LlamaIndex vulnerable to Path Traversal attack through its encode_image function

▾ Twilightllama-index-core · llama-index-coreEPSS 0.55%via OSV
CVE-2024-12704High· 7.5
1y ago

LlamaIndex Improper Handling of Exceptional Conditions vulnerability

LlamaIndex Improper Handling of Exceptional Conditions vulnerability

▾ Twilightllama-index-core · llama-index-coreEPSS 0.81%via OSV
llama-index-core vulnerabilities (CVEs) · VulnSea