chainlit is vulnerable to Missing Authorization
53
Medium Risk
Affected versions of this package are vulnerable to missing authorization in the get_file endpoint due to improper user verification. This flaw allows attackers to access and retrieve session files by guessing or obtaining valid session_id values. Exploiting this vulnerability can result in unauthorized data exposure, potentially leading to data breaches or compromise of sensitive information.
You are affected if you are using a version that falls within the vulnerable range.
chainlit is vulnerable to Missing Authorization in versions 0.1.1 - 1.3.0.
Upgrade the chainlit library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant