Vulnerabilities > Gaizhenbiao

DATE CVE VULNERABILITY TITLE RISK
2024-07-31 CVE-2024-6255 Path Traversal vulnerability in Gaizhenbiao Chuanhuchatgpt 20240410
A vulnerability in the JSON file handling of gaizhenbiao/chuanhuchatgpt version 20240410 allows any user to delete any JSON file on the server, including critical configuration files such as `config.json` and `ds_config_chatbot.json`.
network
low complexity
gaizhenbiao CWE-22
critical
9.1
2024-07-11 CVE-2024-6035 Cross-site Scripting vulnerability in Gaizhenbiao Chuanhuchatgpt 20240410
A Stored Cross-Site Scripting (XSS) vulnerability exists in gaizhenbiao/chuanhuchatgpt version 20240410.
network
low complexity
gaizhenbiao CWE-79
6.1
2024-06-04 CVE-2024-4520 Unspecified vulnerability in Gaizhenbiao Chuanhuchatgpt
An improper access control vulnerability exists in the gaizhenbiao/chuanhuchatgpt application, specifically in version 20240410.
network
low complexity
gaizhenbiao
7.5