CVE-2024-39722: Ollama
High severity, CVSS 7.5. EPSS: 3.9% chance of exploitation in the next 30 days.
An issue was discovered in Ollama before 0.1.46. It exposes which files exist on the server on which it is deployed via path traversal in the api/push route.
Affected products
- Ollama Ollama: before 0.1.46 (fixed in 0.1.46)
Published 2024-10-31. Last modified 2026-06-17.