Loading the catalog…
Loading the catalog…
lightrag-hku
critical severity · CVSS 9.1 · CWE-307 · pip lightrag-hku · affected < 1.5.5 · fixed in 1.5.5
What RADAR observed and classified to build this opportunity. It is what the source published, not a verification that the offer is still active.
CVE-2026-85734: lightrag-hku: No Rate Limiting on /login Endpoint Allows Brute-Force Attacks — lightrag-hku, fixed in 1.5.5
Open sourceThe catalog shows persisted RADAR opportunities. Storage availability does not mean sources are verified or offers are active.