Логотип exploitDog
bind:CVE-2025-6211
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-6211

Количество 3

Количество 3

redhat логотип

CVE-2025-6211

5 месяцев назад

A vulnerability in the DocugamiReader class of the run-llama/llama_index repository, up to version 0.12.28, involves the use of MD5 hashing to generate IDs for document chunks. This approach leads to hash collisions when structurally distinct chunks contain identical text, resulting in one chunk overwriting another. This can cause loss of semantically or legally important document content, breakage of parent-child chunk hierarchies, and inaccurate or hallucinated responses in AI outputs. The issue is resolved in version 0.3.1.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2025-6211

5 месяцев назад

A vulnerability in the DocugamiReader class of the run-llama/llama_index repository, up to version 0.12.28, involves the use of MD5 hashing to generate IDs for document chunks. This approach leads to hash collisions when structurally distinct chunks contain identical text, resulting in one chunk overwriting another. This can cause loss of semantically or legally important document content, breakage of parent-child chunk hierarchies, and inaccurate or hallucinated responses in AI outputs. The issue is resolved in version 0.3.1.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-5hq9-5r78-2gjh

5 месяцев назад

LlamaIndex vulnerable to data loss through hash collisions in its DocugamiReader class

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2025-6211

A vulnerability in the DocugamiReader class of the run-llama/llama_index repository, up to version 0.12.28, involves the use of MD5 hashing to generate IDs for document chunks. This approach leads to hash collisions when structurally distinct chunks contain identical text, resulting in one chunk overwriting another. This can cause loss of semantically or legally important document content, breakage of parent-child chunk hierarchies, and inaccurate or hallucinated responses in AI outputs. The issue is resolved in version 0.3.1.

CVSS3: 6.5
0%
Низкий
5 месяцев назад
nvd логотип
CVE-2025-6211

A vulnerability in the DocugamiReader class of the run-llama/llama_index repository, up to version 0.12.28, involves the use of MD5 hashing to generate IDs for document chunks. This approach leads to hash collisions when structurally distinct chunks contain identical text, resulting in one chunk overwriting another. This can cause loss of semantically or legally important document content, breakage of parent-child chunk hierarchies, and inaccurate or hallucinated responses in AI outputs. The issue is resolved in version 0.3.1.

CVSS3: 6.5
0%
Низкий
5 месяцев назад
github логотип
GHSA-5hq9-5r78-2gjh

LlamaIndex vulnerable to data loss through hash collisions in its DocugamiReader class

CVSS3: 6.5
0%
Низкий
5 месяцев назад

Уязвимостей на страницу