Junglewise Threat Intelligence

CVE-2025-3044: PYSEC-2026-1569 - LlamaIndex vulnerability in ArxivReader class can cause MD5 hash collisions

CVE-2025-3044 · Severity: low · CVSS 3 · Published 2026-07-07

Technologies: llama-index (PyPI). Vendors: PyPI.

Executive brief

LlamaIndex vulnerability in ArxivReader class can cause MD5 hash collisions

Affected products

  • PyPI llama-index
  • PyPI llama-index-readers-papers

Related threats