Live data from GitHub and PyPI, updated daily.
Data last fetched: 2026-05-15
10 active CVEs reported via OSV.dev
SQL injection in llama-index
llama-index vulnerable to arbitrary code execution
LlamaIndex vulnerable to data loss through hash collisions in its DocugamiReader class
LlamaIndex Vulnerable to Denial of Service (DoS)
LlamaIndex vulnerable to Creation of Temporary File in Directory with Insecure Permissions
LlamaIndex Uncontrolled Resource Consumption vulnerability
RunGptLLM class in LlamaIndex has a command injection
llama-index has Insecure Temporary File
llama_index vulnerable to SQL Injection
Other Machine Learning projects in the Python ecosystem worth evaluating.
Get SLA-backed support, security patches, and direct access to senior engineers for LlamaIndex โ without relying on volunteer maintainers.
Talk to an Expert โ