Researchers Detail DifyTap Flaws in Dify That Could Expose AI Chats Across Tenants
ID: 187e9f43-c74d-57ea-909a-8e23540400af
STIX ID: report--187e9f43-c74d-57ea-909a-8e23540400af
Feed Name: CosmicBytez Labs
Threat Score
**DifyTap:** Four chained vulnerabilities in the open-source Dify AI workflow platform allow attackers in multi-tenant deployments to enumerate and retrieve other tenants' conversation histories (tenant isolation bypass, predictable conversation IDs, unauthenticated message retrieval) and pivot via SSRF to harvest credentials; maintainers have been notified and operators should apply patches, audit isolation and network egress, rotate keys, and monitor API logs.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
