Mintplexlabs develops AnythingLLM, a prominent open-source framework for deploying and managing large language model applications, which has attracted significant vulnerability research interest relative to its focused product scope. Vulnerabilities affecting this vendor skew toward serious outcomes, with an elevated share reaching critical severity, and recur across web application and container deployment variants through weakness classes including cross-site scripting, server-side request forgery, path traversal, and input-validation flaws that are characteristic of application-layer exposure in LLM integration platforms. The vendor's prominence in the vulnerability landscape despite its narrow product portfolio reflects both the widespread adoption of its tooling in emerging AI infrastructure and the security demands of integrating untrusted model outputs and user input in web-facing contexts. Defenders should prioritize patching this vendor's updates, particularly for internet-deployed instances, and implement defense-in-depth controls around input handling and request routing. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Mintplexlabs over time
Signals from CVEs in this vendor scope (73 CVEs).
73 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-6842HIGH In version 1.5.5 of mintplex-labs/anything-llm, the `/setup-complete` API endpoint allows unauthorized users to access sensitive system settings. The data returned by the `currentS | Mar 20, 2025 | 7.5 | 50 | NO | YES |
CVE-2026-48116HIGH AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. Prior to 1.13.0, the filesystem-search-files agent skill | May 28, 2026 | 8.8 | 36 | NO | NO |
CVE-2026-24477HIGH AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. If AnythingLLM prior to version 1.10.0 is configured to | Jan 27, 2026 | 7.5 | 36 | NO | YES |
CVE-2024-13059HIGH A vulnerability in mintplex-labs/anything-llm prior to version 1.3.1 allows for path traversal due to improper handling of non-ASCII filenames in the multer library. This vulnerabi | Feb 10, 2025 | 7.2 | 36 | NO | NO |
CVE-2026-32626CRITICAL AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. In 1.11.1 and earlier, AnythingLLM Desktop contains a St | Mar 13, 2026 | 9.6 | 34 | NO | NO |
CVE-2026-32628HIGH AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. In 1.11.1 and earlier, a SQL injection vulnerability in | Mar 13, 2026 | 8.8 | 30 | NO | NO |
CVE-2026-21484MEDIUM AnythingLLM is an application that turns pieces of content into context that any LLM can use as references during chatting. Prior to commit e287fab56089cf8fcea9ba579a3ecdeca0daa313 | Jan 3, 2026 | 5.3 | 30 | NO | YES |
CVE-2023-4897CRITICAL Relative Path Traversal in GitHub repository mintplex-labs/anything-llm prior to 0.0.1. | Sep 11, 2023 | 9.8 | 29 | NO | NO |
CVE-2026-5627HIGH A path traversal vulnerability exists in mintplex-labs/anything-llm versions up to and including 1.9.1, within the `AgentFlows` component. The vulnerability arises from improper ha | Apr 7, 2026 | 7.2 | 27 | NO | NO |
CVE-2024-3025CRITICAL mintplex-labs/anything-llm is vulnerable to path traversal attacks due to insufficient validation of user-supplied input in the logo filename functionality. Attackers can exploit t | Apr 10, 2024 | 9.9 | 27 | NO | NO |
Signals from CVEs in this vendor scope (73 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Mintplexlabs.
Media articles that mention a CVE ID that affects a product developed by Mintplexlabs — matched by CVE ID, not by vendor name.