- Description
- langgenius/dify versions 1.1.0 to 1.1.2 are vulnerable to unsanitized input in the code node, allowing execution of arbitrary code with full root permissions. The vulnerability arises from the ability to override global functions in JavaScript, such as parseInt, before sandbox security restrictions are imposed. This can lead to unauthorized access to secret keys, internal network servers, and lateral movement within dify.ai. The issue is resolved in version 1.1.3.
- Source
- security@huntr.dev
- NVD status
- Analyzed
CVSS 3.1
- Type
- Primary
- Base score
- 7.2
- Impact score
- 5.9
- Exploitability score
- 1.2
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
- Severity
- HIGH
CVSS 3.0
- Type
- Secondary
- Base score
- 9.8
- Impact score
- 5.9
- Exploitability score
- 3.9
- Vector string
- CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity
- CRITICAL
- security@huntr.dev
- CWE-1100
- Hype score
- Not currently trending
CVE-2025-3466 Code Injection Vulnerability in Dify AI Platform Versions 1.1.0-1.1.2 https://t.co/m7f4Rtac9r
@VulmonFeeds
7 Jul 2025
7 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2025-3466 langgenius/dify versions 1.1.0 to 1.1.2 are vulnerable to unsanitized input in the code node, allowing execution of arbitrary code with full root permissions. The vulne… https://t.co/ggvbbszYG6
@CVEnew
7 Jul 2025
415 Impressions
0 Retweets
1 Like
0 Bookmarks
0 Replies
0 Quotes
[CVE-2025-3466: CRITICAL] Update langgenius/dify to version 1.1.3 now! Vulnerabilities in versions 1.1.0 to 1.1.2 allow execution of arbitrary code, risking unauthorized access to sensitive data.#cve,CVE-2025-3466,#cybersecurity https://t.co/CPUGKu4Qle https://t.co/nHatboci7x
@CveFindCom
7 Jul 2025
51 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:langgenius:dify:*:*:*:*:*:node.js:*:*",
"vulnerable": true,
"matchCriteriaId": "C0CE6D8A-1407-4D80-A035-FC2FD9B610CB",
"versionEndExcluding": "1.1.3",
"versionStartIncluding": "1.1.0"
}
],
"operator": "OR"
}
]
}
]