CVE-2024-45201 | llama_index up to 0.10.37 Import download/integration.py code injection
A vulnerability described as problematic has been identified in llama_index up to 0.10.37. Affected by this vulnerability is an unknown functionality of the file download/integration.py of the component Import Handler. The manipulation results in code injection.
This vulnerability is identified as CVE-2024-45201. The attack can only be performed from the local network. There is not any exploit available.
Upgrading the affected component is recommended.