-
Notifications
You must be signed in to change notification settings - Fork 3
Pull requests: sundi133/rag-eval
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
[Pepper] Prompt Injection via
prompt_key in LLMChain
#77
opened Jun 24, 2026 by
sundi133
Owner
Loading…
🔒 Security Fix: Development server configuration: binds to 0.0.0.0 and enables --reload
#76
opened Jan 26, 2026 by
sundi133
Owner
Loading…
5 tasks
🔒 Security Fix: Missing Input Validation for File Operations
#75
opened Dec 15, 2025 by
sundi133
Owner
Loading…
4 tasks
🔒 Security Fix: Potential Insecure Use of os.path.splitext with User Input
#74
opened Dec 12, 2025 by
sundi133
Owner
Loading…
3 tasks
🔒 Security Fix: Potential Sensitive Data Exposure via Unencrypted Chat Data
#73
opened Dec 12, 2025 by
sundi133
Owner
Loading…
4 tasks
🔒 Security Fix: Sensitive Data Exposure via Unencrypted LLM Endpoint Access Tokens
#72
opened Dec 11, 2025 by
sundi133
Owner
Loading…
4 tasks
🔒 Security Fix: Arbitrary File Upload to /tmp Directory
#71
opened Dec 11, 2025 by
sundi133
Owner
Loading…
3 tasks done
🔒 Security Fix: Potential Path Traversal in File Upload
#70
opened Dec 11, 2025 by
sundi133
Owner
Loading…
3 tasks
🔒 Security Fix: Potential Denial of Service via Large File Upload
#69
opened Dec 3, 2025 by
sundi133
Owner
Loading…
🔒 Security Fix: Database URL Exposed in Source Code and Environment
#68
opened Nov 19, 2025 by
sundi133
Owner
Loading…
🔒 Security Fix: Potential Sensitive Data Exposure: Unencrypted Access Tokens
#67
opened Nov 19, 2025 by
sundi133
Owner
Loading…
🔒 Security Fix: Lack of Input Validation for Query Parameter
#64
opened Nov 19, 2025 by
sundi133
Owner
Loading…
ProTip!
Type g i on any issue or pull request to go back to the issue listing page.