CVE-2025-29720 | Dify 1.0 server-side request forgery
A vulnerability has been found in Dify 1.0 and classified as critical. Affected by this vulnerability is the function controllers.console.remote_files.RemoteFileUploadApi. The manipulation leads to server-side request forgery.
This vulnerability is known as CVE-2025-29720. The attack can be launched remotely. There is no exploit available.