lm-sys records
6 published records for vendor lm-sys.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-918 Server-Side Request Forgery (SSRF)3
- CWE-400 Uncontrolled Resource Consumption1
- CWE-601 URL Redirection to Untrusted Site ('Open Redirect')1
- CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
6 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
37Monitor | CVE-2024-10044No exploit | SSRF in POST /worker_generate_stream API endpoint in lm-sys/fastchatlm-sys · fastchat · CWE-918 | Critical9.3 | — | 0.5% | Dec 30, 2024 |
30Monitor | CVE-2024-12376No exploit | Server Side Request Forgery in lm-sys/fastchatlm-sys · fastchat · CWE-918 | High7.5 | — | 0.7% | Mar 20, 2025 |
30Monitor | CVE-2024-10907No exploit | Denial of Service (DoS) via Multipart Boundary in lm-sys/fastchatlm-sys · fastchat · CWE-835 | High7.5 | — | 0.7% | Mar 20, 2025 |
30Monitor | CVE-2024-11603No exploit | Server-Side Request Forgery in lm-sys/fastchatlm-sys · fastchat · CWE-918 | High7.5 | — | 0.7% | Mar 20, 2025 |
30Monitor | CVE-2024-10912No exploit | Denial of Service in lm-sys/fastchatlm-sys · fastchat · CWE-400 | High7.5 | — | 0.6% | Mar 20, 2025 |
24Monitor | CVE-2024-10908Proof of concept | Open Redirect in lm-sys/fastchatlm-sys · fastchat · CWE-601 | Medium6.1 | — | 0.8% | Mar 20, 2025 |
- CVE-2024-1004437Monitor
SSRF in POST /worker_generate_stream API endpoint in lm-sys/fastchat
CriticalCVSS 9.3No exploitEPSS 1%lm-sys · fastchatDec 30, 2024
- CVE-2024-1237630Monitor
Server Side Request Forgery in lm-sys/fastchat
HighCVSS 7.5No exploitEPSS 1%lm-sys · fastchatMar 20, 2025
- CVE-2024-1090730Monitor
Denial of Service (DoS) via Multipart Boundary in lm-sys/fastchat
HighCVSS 7.5No exploitEPSS 1%lm-sys · fastchatMar 20, 2025
- CVE-2024-1160330Monitor
Server-Side Request Forgery in lm-sys/fastchat
HighCVSS 7.5No exploitEPSS 1%lm-sys · fastchatMar 20, 2025
- CVE-2024-1091230Monitor
Denial of Service in lm-sys/fastchat
HighCVSS 7.5No exploitEPSS 1%lm-sys · fastchatMar 20, 2025
- CVE-2024-1090824Monitor
Open Redirect in lm-sys/fastchat
MediumCVSS 6.1Proof of conceptEPSS 1%lm-sys · fastchatMar 20, 2025