Vulnerabilities > Gradio Project
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-10-10 | CVE-2024-47167 | Server-Side Request Forgery (SSRF) vulnerability in Gradio Project Gradio Gradio is an open-source Python package designed for quick prototyping. | 9.8 |
2024-10-10 | CVE-2024-47168 | Always-Incorrect Control Flow Implementation vulnerability in Gradio Project Gradio Gradio is an open-source Python package designed for quick prototyping. | 4.3 |
2024-06-06 | CVE-2024-4325 | Server-Side Request Forgery (SSRF) vulnerability in Gradio Project Gradio A Server-Side Request Forgery (SSRF) vulnerability exists in the gradio-app/gradio version 4.21.0, specifically within the `/queue/join` endpoint and the `save_url_to_cache` function. | 8.6 |
2024-06-06 | CVE-2024-4941 | Unspecified vulnerability in Gradio Project Gradio A local file inclusion vulnerability exists in the JSON component of gradio-app/gradio version 4.25. | 7.5 |
2024-02-05 | CVE-2024-0964 | Path Traversal vulnerability in Gradio Project Gradio A local file include could be remotely triggered in Gradio due to a vulnerable user-supplied JSON value in an API request. | 9.4 |
2023-12-22 | CVE-2023-51449 | Path Traversal vulnerability in Gradio Project Gradio Gradio is an open-source Python package that allows you to quickly build a demo or web application for your machine learning model, API, or any arbitary Python function. | 7.5 |
2023-12-14 | CVE-2023-6572 | Command Injection vulnerability in Gradio Project Gradio Command Injection in GitHub repository gradio-app/gradio prior to main. | 8.1 |
2023-09-15 | CVE-2023-41626 | Unrestricted Upload of File with Dangerous Type vulnerability in Gradio Project Gradio 3.27.0 Gradio v3.27.0 was discovered to contain an arbitrary file upload vulnerability via the /upload interface. | 4.8 |
2023-06-08 | CVE-2023-34239 | Unspecified vulnerability in Gradio Project Gradio Gradio is an open-source Python library that is used to build machine learning and data science. | 9.1 |
2023-02-23 | CVE-2023-25823 | Use of Hard-coded Credentials vulnerability in Gradio Project Gradio Gradio is an open-source Python library to build machine learning and data science demos and web applications. | 9.8 |