Mmastodon TechnologyCybersecurity first seen 6 h ago, last 6 h ago, peak #12
High-severity vulnerability disclosed in Dify AI platform
Original: π¨ EUVD-2026-92866 π Score: 8.3/10 (CVSS v3.1) π¦ Product: dify π’ Vendor: langgenius π Updated: 2026-10-05 π Dify is an op
A security advisory, EUVD-2026-92866, flags a high-severity vulnerability (CVSS 8.3) in Dify, the open-source LLM application development platform by LangGenius. The flaw affects versions prior to 1.13.0 and involves the /console/api/remote-files/upload endpoint, which accepted improper input. Users are urged to update their deployments to the patched release.
Why now: Many organisations run Dify for AI app development, so a high-severity flaw with a fix available prompts immediate patching discussion.
Evidence
API: https://socialmediatrends-api.osmike.com/v1/trends/1179460