PT-2025-30449 · Ollama · Ollama

Geckosecurity

·

Published

2025-07-22

·

Updated

2025-12-25

·

CVE-2025-51471

CVSS v3.1

6.9

Medium

VectorAV:N/AC:H/PR:N/UI:R/S:C/C:H/I:L/A:N
Name of the Vulnerable Software and Affected Versions Ollama version 0.6.7
Description A cross-domain token exposure exists in the server.auth.getAuthorizationToken function. This allows remote attackers to steal authentication tokens and bypass access controls by exploiting a malicious realm value within a WWW-Authenticate header returned by the /api/pull endpoint.
Recommendations Update Ollama to a newer version that addresses this issue. As a temporary workaround, consider restricting access to the /api/pull endpoint.

Exploit

Fix

Insufficient Verification of Data Authenticity

Session Fixation

Weakness Enumeration

Related Identifiers

CVE-2025-51471
GHSA-X9HG-5Q6G-Q3JR
GO-2025-3824
OPENSUSE-SU-2025:15405-1
PYSEC-2025-147

Affected Products

Ollama