PT-2026-41675 · Dify · Dify
CVSS v3.1
9.4
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L |
Name of the Vulnerable Software and Affected Versions
Dify versions prior to 1.14.2
Description
Insufficient URL path sanitization allows authenticated users to manipulate requests forwarded to the Plugin Daemon's internal REST API. By using unencoded dot sequences in task identifiers or manipulating the
filename parameter in the plugin icon endpoint, attackers can perform path traversal to exit their authorized tenant path. This enables access to internal endpoints, such as debug interfaces, provided the attacker knows the victim tenant's UUID. In Dify Cloud environments, the risk is increased as free self-registration allows attackers to create accounts easily.Recommendations
Update Dify to version 1.14.2 or later.
As a temporary mitigation, restrict access to the
filename parameter in the plugin icon endpoint to minimize the risk of exploitation.Exploit
Fix
Relative Path Traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Dify