CVE-2024-12433 | infiniflow ragflow up to 0.13.x RPC Server pickle.loads deserialization
A vulnerability has been found in infiniflow ragflow up to 0.13.x and classified as very critical. Affected by this vulnerability is the function pickle.loads of the component RPC Server. The manipulation leads to deserialization.
This vulnerability is known as CVE-2024-12433. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.