CVE-2025-44779: Ollama
Medium severity, CVSS 6.6. EPSS: 0.2% chance of exploitation in the next 30 days.
An issue in Ollama v0.1.33 allows attackers to delete arbitrary files via sending a crafted packet to the endpoint /api/pull.
Affected products
- Ollama Ollama: version 0.1.33 only
Published 2025-08-07. Last modified 2026-06-17.