Authentication Bypass in Ollama Platform's API Endpoints
CVE-2025-63389
9.8CRITICAL
What is CVE-2025-63389?
The Ollama platform's API endpoints have a serious flaw where multiple endpoints can be accessed without proper authentication mechanisms. This vulnerability allows remote attackers to interact with the system and perform unauthorized operations related to model management, potentially leading to misuse of the platform. Users of versions prior to v0.12.3 should be vigilant and upgrade to secure their systems.
