Lollms is a modestly scoped but prominently deployed large-language-model interface and web UI framework that has accumulated a meaningful volume of vulnerabilities despite its narrow product footprint. The vendor's disclosures skew strongly toward critical-severity outcomes and frequently acquire public exploit code, reflecting the exposure inherent to internet-facing web interfaces that bridge user input to model execution. Vulnerabilities recur across the core web UI product through a durable pattern of path-traversal variants, cross-site request forgery, and cross-site scripting weaknesses that are characteristic of web applications with insufficient input validation and request-origin verification. Defenders should treat updates to this vendor as high-priority for any deployment exposed to untrusted networks, as the combination of critical severity and exploit availability amplifies the risk surface. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Lollms over time
Signals from CVEs in this vendor scope (67 CVEs).
67 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-33340CRITICAL LoLLMs WEBUI provides the Web user interface for Lord of Large Language and Multi modal Systems. A critical Server-Side Request Forgery (SSRF) vulnerability has been identified in | Mar 24, 2026 | 9.1 | 55 | NO | YES |
CVE-2024-1520CRITICAL An OS Command Injection vulnerability exists in the '/open_code_folder' endpoint of the parisneo/lollms-webui application, due to improper validation of user-supplied input in the | Apr 10, 2024 | 9.8 | 54 | NO | NO |
CVE-2024-1601CRITICAL An SQL injection vulnerability exists in the `delete_discussion()` function of the parisneo/lollms-webui application, allowing an attacker to delete all discussions and message dat | Apr 16, 2024 | 9.8 | 49 | NO | NO |
CVE-2024-4322HIGH A path traversal vulnerability exists in the parisneo/lollms-webui application, specifically within the `/list_personalities` endpoint. By manipulating the `category` parameter, an | May 16, 2024 | 7.5 | 48 | NO | YES |
CVE-2024-4320CRITICAL A remote code execution (RCE) vulnerability exists in the '/install_extension' endpoint of the parisneo/lollms-webui application, specifically within the `@router.post("/install_ex | Jun 6, 2024 | 9.8 | 46 | NO | NO |
CVE-2024-1600CRITICAL A Local File Inclusion (LFI) vulnerability exists in the parisneo/lollms-webui application, specifically within the `/personalities` route. An attacker can exploit this vulnerabili | Apr 10, 2024 | 9.3 | 43 | NO | NO |
CVE-2024-3429CRITICAL A path traversal vulnerability exists in the parisneo/lollms application, specifically within the `sanitize_path_from_endpoint` and `sanitize_path` functions in `lollms_core\lollms | Jun 6, 2024 | 9.8 | 41 | NO | NO |
CVE-2026-0560HIGH A Server-Side Request Forgery (SSRF) vulnerability exists in parisneo/lollms versions prior to 2.2.0, specifically in the `/api/files/export-content` endpoint. The `_download_image | Mar 29, 2026 | 7.5 | 39 | NO | YES |
CVE-2026-1114CRITICAL In parisneo/lollms version 2.1.0, the application's session management is vulnerable to improper access control due to the use of a weak secret key for signing JSON Web Tokens (JWT | Apr 7, 2026 | 9.8 | 34 | NO | NO |
CVE-2026-1115CRITICAL A Stored Cross-Site Scripting (XSS) vulnerability was identified in the social feature of parisneo/lollms, affecting the latest version prior to 2.2.0. The vulnerability exists in | Apr 10, 2026 | 9.6 | 33 | NO | NO |
Signals from CVEs in this vendor scope (67 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Lollms.
Media articles that mention a CVE ID that affects a product developed by Lollms — matched by CVE ID, not by vendor name.