CVE-2025-6854 | chatchat-space Langchain-Chatchat up to 0.3.1 files?purpose=assistants path traversal (Issue 5353 / EUVD-2025-19479)
A vulnerability marked as critical has been reported in chatchat-space Langchain-Chatchat up to 0.3.1. Affected by this vulnerability is an unknown functionality of the file /v1/files?purpose=assistants. Performing manipulation results in path traversal.
This vulnerability is known as CVE-2025-6854. Remote exploitation of the attack is possible. Furthermore, an exploit is available.