CVE-2024-12450 | infiniflow ragflow up to 0.13.x URL Parameter web_crawl command injection
A vulnerability classified as critical was found in infiniflow ragflow up to 0.13.x. This vulnerability affects the function web_crawl of the component URL Parameter Handler. The manipulation leads to command injection.
This vulnerability was named CVE-2024-12450. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.