IDOR in AppMCPServer PUT Endpoint Allows Modification of Other Apps' MCP Servers
Dify security advisories
All 21 advisories Dify has published with an identifier, newest first. Severity is the one its publisher assigned, and the fix is the release the publisher named. Nothing on this page is our judgement.
- Advisories
- 2114 carry a CVE
- high
- 8
- medium
- 10
- low
- 3
- Fix in the archive
- 14of 21 matched to a release
- Oldest
- 17 Apr 20251.4 years ago
7 of these point at a version older than anything the archive holds, so there is no release page to link. That is a gap in what was collected, not evidence that the fix does not exist. This page is a copy of what the publisher published, kept for reference. The authoritative source for a security question is the publisher, and an advisory missing from here is not evidence that none exists. What this page does and does not tell you sets out the limits in full.
Newest first
Every productCross-Tenant External API Detail Disclosure
Cross-Tenant External API Usage Enumeration
Cross-Tenant File Preview via Unscoped Console `file_id`
Dify API Extension has SSRF Vulnerability
Unauthenticated Server-Side Request Forgery in /console/api/remote-files/upload endpoint
IDOR in deleting someone else's chat conversation
Stored XSS via SVG-file upload
Dify - Stored XSS in chat
User enumeration
Use of Cryptographically Weak Pseudo-Random Number Generator for API Key Generation
Client‑side DOM XSS in the web chat app of Dify when using echarts
Plaintext API Key Exposure via Model Provider Configuration Endpoint
Dify MCP OAuth Flow Vulnerable to XSS
Broken Access Control on Log Message Endpoint Allows Reading Chats of Others
Dify has xss vulnerability
DIFY vulnerable to Clickjacking Attack
Unauthorized Access and Modification of APP Orchestration
Insecure User Role Access Control for APP Editing
Unauthorized APP Enable/Disable via API
Insecure User Role Access Control for APP DSL Exporting