Skip to content
Llama StackGHSA-x75h-m6jj-6cj2

Llama Stack could potentially allow for remote code execution

Medium5.3CVE-2025-55178 · Published Sep 24, 2025 · updated Jul 7, 2026

Llama Stack prior to version v0.2.20 accepted unverified parameters in the resolve_ast_by_type function which could potentially allow for remote code execution.

GitHub advisory

Affected versions

PackageAffectedFixed in
llama-stack
PyPI
< 0.2.200.2.20
Details and references

More Llama Stack advisories

All Llama Stack
Advisory
Llama Stack exposes secret in initialization log
Low3.2Jan 30

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.