Vulnerabilities > Hliu

DATE CVE VULNERABILITY TITLE RISK
2025-03-20 CVE-2024-9311 Cross-Site Request Forgery (CSRF) vulnerability in Hliu Large Language and Vision Assistant 1.2.0
A Cross-Site Request Forgery (CSRF) vulnerability in haotian-liu/llava v1.2.0 (LLaVA-1.6) allows an attacker to upload files with malicious content without authentication or user interaction.
network
low complexity
hliu CWE-352
6.1