Dify

Vendor:

First CVE: Mar 20, 2025 · Active for 1 year

31
Total CVEs
More Total CVEs than 96% of tracked products
15.5
Avg CVEs / Year
Higher CVE frequency than 98% of tracked products
6.9
Avg CVSS
Higher Avg CVSS than 40% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Dify over time

Volume of CVEsAvg CVSS Base Score
First CVE
Mar 20, 2025
16 months ago
Most Recent CVE
Jul 10, 2026
14 days ago

CVE Severity & Scoring

Dify31 CVEs
All CVEs352,294 CVEs
LowMediumHighCritical
Attack Vector
Local1 (3.2%)
Network30 (96.8%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low28 (90.3%)
High3 (9.7%)
Unknown0 (0.0%)
User Interaction
None23 (74.2%)
Unknown0 (0.0%)
Required8 (25.8%)
Privileges Required
Low15 (48.4%)
High2 (6.5%)
None14 (45.2%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (31 CVEs).

31 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Dify v1.9.1 is vulnerable to Insecure Permissions. An unauthenticated attacker can directly send HTTP GET requests to the /console/api/system-features endpoint without any authenti
Dec 18, 20257.557NOYES
Dify before 1.16.0-rc1 contains a SQL injection vulnerability in the MyScale vector store backend that allows attackers to execute arbitrary SQL by supplying unsanitized search par
Jul 10, 20268.839NONO
Dify version 1.14.1 and prior contain a path traversal vulnerability that allows authenticated users to manipulate requests forwarded to the Plugin Daemon's internal REST API by ex
May 18, 20269.439NONO
Dify before version 1.14.2 contains an authorization bypass vulnerability that allows authenticated editor users to set and enable trace configurations for any application regardle
May 18, 20269.137NONO
Default credentials in Dify thru 1.5.1. PostgreSQL username and password specified in the docker-compose.yaml file included in its source code. NOTE: the Supplier reports that the
Dec 18, 20259.835NONO
A Cross-Origin Resource Sharing (CORS) misconfiguration vulnerability exists in Dify v1.9.1 in the /console/api/system-features endpoint. The endpoint implements an overly permissi
Dec 18, 20259.132NONO
A Cross-Origin Resource Sharing (CORS) misconfiguration vulnerability exists in Dify v1.9.1 in the /console/api/setup endpoint. The endpoint implements an insecure CORS policy that
Dec 18, 20259.132NONO
Dify before version 1.14.2 contains an authorization bypass vulnerability in the file preview endpoint that allows any authenticated user to read up to 3,000 characters of any uplo
May 18, 20267.531NONO
In langgenius/dify-web version 1.6.0, the authentication mechanism reveals the existence of user accounts by returning different error messages for non-existent and existing accoun
Oct 22, 20255.330NOYES
Dify before version 1.14.0 contains an authorization bypass vulnerability that allows authenticated users to read the full contents of files uploaded by other users within the same
May 5, 20266.529NONO

Exploit Exposure

Signals from CVEs in this product scope (31 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
2 CVEs
6.5% of CVEs· 97th percentile
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (31 CVEs).

Media Mentions

Signals from CVEs in this product scope (31 CVEs).

Top CNAs Publishing CVEs For Dify

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
1.9.138.69.5%01
1.8.113.10.2%00
1.6.015.30.7%01
1.2.016.10.2%00
1.0.014.80.2%00
0.9.215.40.4%00
0.9.114.30.4%00
0.10.147.90.6%00