Vulnerabilities in Zilliz
2 resultsCVE-2026-105049MEDIUMZilliz Attu before 3.0.0 has a Playground feature that does not require authentication for proxying arbitrary HTTP and HTTPS requests to URLEPSS 0.2%CVE-2026-105048MEDIUMThe Playground feature of Zilliz Attu before 3.0.0 allows SSRF (proxying of requests to private IP addresses).EPSS 0.2%