logo

Researchers Detail DifyTap Flaws in Dify That Could Expose AI Chats Across Tenants

ID: 187e9f43-c74d-57ea-909a-8e23540400af

STIX ID: report--187e9f43-c74d-57ea-909a-8e23540400af

Feed Name: CosmicBytez Labs

Threat Score
75/100

Date Published: 2026-06-22

Date Updated: 2026-06-24

...
...

**DifyTap:** Four chained vulnerabilities in the open-source Dify AI workflow platform allow attackers in multi-tenant deployments to enumerate and retrieve other tenants' conversation histories (tenant isolation bypass, predictable conversation IDs, unauthenticated message retrieval) and pivot via SSRF to harvest credentials; maintainers have been notified and operators should apply patches, audit isolation and network egress, rotate keys, and monitor API logs.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.