Ratings / AI App
Critical Rating 1 / 5 · Critical — Active surveillance / serious risk.
Llama.cpp, despite its local-first design, poses a significant privacy threat due to numerous critical security vulnerabilities. For instance, in April 2024, a remote code execution (RCE) vulnerability (CVSS 9.6) was found in `llama-cpp-python` due to improper handling of chat te
Llama.cpp, despite its local-first design, poses a significant privacy threat due to numerous critical security vulnerabilities. For instance, in April 2024, a remote code execution (RCE) vulnerability (CVSS 9.6) was found in `llama-cpp-python` due to improper handling of chat templates, allowing arbitrary code execution. Furthermore, in April 2026, CVE-2026-34159 identified another critical RCE in the RPC backend, enabling unauthenticated attackers to read and write arbitrary process memory. The project's security policy explicitly warns users under "Data privacy" that "To protect sensitive data from potential leaks or unauthorized access, it is crucial to sandbox the model execution," and advises against using the RPC backend in untrusted environments, acknowledging the inherent risks. These vulnerabilities can lead to unauthorized data access and breaches if not properly mitigated by users.
The full methodological and legal context for this rating. This card is what we point to when asked to substantiate the claim.