CVE-2024-12880 | infiniflow ragflow up to 0.13.0 /v1/system/token_list improper authorization
A vulnerability was found in infiniflow ragflow up to 0.13.0. It has been declared as critical. This vulnerability affects unknown code of the file /v1/system/token_list. The manipulation leads to improper authorization.
This vulnerability was named CVE-2024-12880. The attack can be initiated remotely. There is no exploit available.