Skip to content
ragasGHSA-v2xr-wvrv-p969

RAGAS has an Arbitrary File Read vulnerability

High7.5CVE-2025-45691 · Published Mar 5, 2026 · updated Jul 13, 2026

An Arbitrary File Read vulnerability exists in the ImageTextPromptValue class in Exploding Gradients RAGAS v0.2.3 to v0.2.14. The vulnerability stems from improper validation and sanitization of URLs supplied in the retrieved_contexts parameter when handling multimodal inputs.

GitHub advisory

Affected versions

PackageAffectedFixed in
ragas
PyPI
>= 0.2.3, < 0.3.0-rc10.3.0-rc1
Details and references

More ragas advisories

All ragas
Advisory
RAGAS has SSRF via Multi-Modal Faithfulness Collections Module
Low6.3Apr 20

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.