Dify
Vendor:
First CVE: Mar 20, 2025 · Active for 1 year
31
Total CVEs
More Total CVEs than 96% of tracked products
15.5
Avg CVEs / Year
Higher CVE frequency than 98% of tracked products
6.9
Avg CVSS
Higher Avg CVSS than 40% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Dify over time
Volume of CVEsAvg CVSS Base Score
First CVE
Mar 20, 2025
16 months ago
Most Recent CVE
Jul 10, 2026
14 days ago
CVE Severity & Scoring
Dify31 CVEs
48%
32%
16%
All CVEs352,294 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local1 (3.2%)
Network30 (96.8%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low28 (90.3%)
High3 (9.7%)
Unknown0 (0.0%)
User Interaction
None23 (74.2%)
Unknown0 (0.0%)
Required8 (25.8%)
Privileges Required
Low15 (48.4%)
High2 (6.5%)
None14 (45.2%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (31 CVEs).
31 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-63387HIGH Dify v1.9.1 is vulnerable to Insecure Permissions. An unauthenticated attacker can directly send HTTP GET requests to the /console/api/system-features endpoint without any authenti | Dec 18, 2025 | 7.5 | 57 | NO | YES |
CVE-2026-61461HIGH Dify before 1.16.0-rc1 contains a SQL injection vulnerability in the MyScale vector store backend that allows attackers to execute arbitrary SQL by supplying unsanitized search par | Jul 10, 2026 | 8.8 | 39 | NO | NO |
CVE-2026-41948CRITICAL Dify version 1.14.1 and prior contain a path traversal vulnerability that allows authenticated users to manipulate requests forwarded to the Plugin Daemon's internal REST API by ex | May 18, 2026 | 9.4 | 39 | NO | NO |
CVE-2026-41947CRITICAL Dify before version 1.14.2 contains an authorization bypass vulnerability that allows authenticated editor users to set and enable trace configurations for any application regardle | May 18, 2026 | 9.1 | 37 | NO | NO |
CVE-2025-56157CRITICAL Default credentials in Dify thru 1.5.1. PostgreSQL username and password specified in the docker-compose.yaml file included in its source code. NOTE: the Supplier reports that the | Dec 18, 2025 | 9.8 | 35 | NO | NO |
CVE-2025-63388CRITICAL A Cross-Origin Resource Sharing (CORS) misconfiguration vulnerability exists in Dify v1.9.1 in the /console/api/system-features endpoint. The endpoint implements an overly permissi | Dec 18, 2025 | 9.1 | 32 | NO | NO |
CVE-2025-63386CRITICAL A Cross-Origin Resource Sharing (CORS) misconfiguration vulnerability exists in Dify v1.9.1 in the /console/api/setup endpoint. The endpoint implements an insecure CORS policy that | Dec 18, 2025 | 9.1 | 32 | NO | NO |
CVE-2026-41949HIGH Dify before version 1.14.2 contains an authorization bypass vulnerability in the file preview endpoint that allows any authenticated user to read up to 3,000 characters of any uplo | May 18, 2026 | 7.5 | 31 | NO | NO |
CVE-2025-11750MEDIUM In langgenius/dify-web version 1.6.0, the authentication mechanism reveals the existence of user accounts by returning different error messages for non-existent and existing accoun | Oct 22, 2025 | 5.3 | 30 | NO | YES |
CVE-2026-41950MEDIUM Dify before version 1.14.0 contains an authorization bypass vulnerability that allows authenticated users to read the full contents of files uploaded by other users within the same | May 5, 2026 | 6.5 | 29 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (31 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
2 CVEs
6.5% of CVEs· 97th percentile
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (31 CVEs).
Media Mentions
Signals from CVEs in this product scope (31 CVEs).
Top CNAs Publishing CVEs For Dify
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 1.9.1 | 3 | 8.6 | 9.5% | 0 | 1 |
| 1.8.1 | 1 | 3.1 | 0.2% | 0 | 0 |
| 1.6.0 | 1 | 5.3 | 0.7% | 0 | 1 |
| 1.2.0 | 1 | 6.1 | 0.2% | 0 | 0 |
| 1.0.0 | 1 | 4.8 | 0.2% | 0 | 0 |
| 0.9.2 | 1 | 5.4 | 0.4% | 0 | 0 |
| 0.9.1 | 1 | 4.3 | 0.4% | 0 | 0 |
| 0.10.1 | 4 | 7.9 | 0.6% | 0 | 0 |