Junglewise Threat Intelligence

CVE-2024-4181: PYSEC-2026-1565 - RunGptLLM class in LlamaIndex has a command injection

CVE-2024-4181 · Severity: low · CVSS 3 · Published 2026-07-07

Technologies: llama-index (PyPI). Vendors: PyPI.

Executive brief

RunGptLLM class in LlamaIndex has a command injection

Affected products

  • PyPI llama-index-llms-rungpt
  • PyPI llama-index

Related threats