Vulnerabilities > CVE-2024-5935 - Unspecified vulnerability in Zylon Privategpt 0.5.0
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
HIGH Availability impact
HIGH Summary
A Cross-Site Request Forgery (CSRF) vulnerability in version 0.5.0 of imartinez/privategpt allows an attacker to delete all uploaded files on the server. This can lead to data loss and service disruption for the application's users.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |