Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2025-56520

Dify v1.6.0 was discovered to contain a Server-Side Request Forgery (SSRF) via the component controllers.console.remote_files.RemoteFileUploadApi. A different vulnerability than CVE-2025-29720.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 10.4%
CVSS Severity
CVSS v3 Score 5.3
Products affected by CVE-2025-56520
  • Dify » Dify » Version: 1.6.0
    cpe:2.3:a:dify:dify:1.6.0


Contact Us

Shodan ® - All rights reserved