CVE-2024-12766 | parisneo lollms-webui 13 REST API /api/proxy forbid_remote_access server-side request forgery
A vulnerability was found in parisneo lollms-webui 13. It has been declared as critical. Affected by this vulnerability is the function forbid_remote_access of the file /api/proxy of the component REST API. The manipulation leads to server-side request forgery.
This vulnerability is known as CVE-2024-12766. The attack can be launched remotely. There is no exploit available.