OllamaGHSA-93jv-pvg8-hf3v
Ollama allows deletion of arbitrary files
Medium6.6CVE-2025-44779 · Published Aug 7, 2025 · updated Jun 10, 2026
An issue in Ollama v0.1.33 allows attackers to delete arbitrary files via sending a crafted packet to the endpoint /api/pull.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| github.com/ollama/ollama Go | < 0.1.34 | 0.1.34 |
Details and references
- CVSS 3.1
- CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H
- Severity from
- GitHub (reviewed advisory)
- Weakness
- CWE-20
- Also known as
- CVE-2025-44779, GO-2025-3851
More Ollama advisories
All Ollama| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Dec 182025 | Ollama Platform has missing authentication enabling attackers to perform model management operations | Critical | No fix yet |
| Jul 222025 | Ollama vulnerable to Cross-Domain Token Exposure | Medium6.9 | No fix yet |
| May 162025 | Ollama Server Vulnerable to Denial of Service (DoS) Attack | High7.5 | No fix yet |
| Mar 202025 | Ollama Divide By Zero vulnerability | High7.5 | No fix yet |
| Mar 202025 | Ollama Allocation of Resources Without Limits or Throttling vulnerability | High7.5 | No fix yet |
| Mar 202025 | Ollama Denial of Service (DoS) via Null Pointer Dereference | High7.5 | No fix yet |