0.15.1
1 years ago
17 days ago
Known vulnerabilities in the letta package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
letta is a Create LLM agents with long-term memory and custom tools Affected versions of this package are vulnerable to Directory Traversal via insufficient sanitization in the file upload functionality. An attacker can upload and overwrite files outside the intended directory by providing specially crafted file names. How to fix Directory Traversal? Upgrade | [,0.6.8) |
letta is a Create LLM agents with long-term memory and custom tools Affected versions of this package are vulnerable to Arbitrary Code Injection via the How to fix Arbitrary Code Injection? A fix was pushed into the | [0,) |
letta is a Create LLM agents with long-term memory and custom tools Affected versions of this package are vulnerable to Eval Injection via the How to fix Eval Injection? There is no fixed version for | [0,) |
letta is a Create LLM agents with long-term memory and custom tools Affected versions of this package are vulnerable to Missing Authorization on the How to fix Missing Authorization? Upgrade | [,0.5.2) |