A vulnerability, which was classified as problematic, has been found in mintplex-labs anything-llm up to 0.x. Affected by this issue is some unknown functionality of the component system-preferences API Endpoint. The manipulation of the argument logo_filename leads to improper input validation.
This vulnerability is handled as CVE-2024-3028. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.