Vulnerabilities > Gradio Project > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-10-10 | CVE-2024-47868 | Path Traversal vulnerability in Gradio Project Gradio Gradio is an open-source Python package designed for quick prototyping. | 7.5 |
2024-10-10 | CVE-2024-47870 | Race Condition vulnerability in Gradio Project Gradio Gradio is an open-source Python package designed for quick prototyping. | 8.1 |
2024-10-10 | CVE-2024-47084 | Unspecified vulnerability in Gradio Project Gradio Gradio is an open-source Python package designed for quick prototyping. | 8.3 |
2024-06-06 | CVE-2024-4325 | Server-Side Request Forgery (SSRF) vulnerability in Gradio Project Gradio A Server-Side Request Forgery (SSRF) vulnerability exists in the gradio-app/gradio version 4.21.0, specifically within the `/queue/join` endpoint and the `save_url_to_cache` function. | 8.6 |
2024-06-06 | CVE-2024-4941 | Unspecified vulnerability in Gradio Project Gradio A local file inclusion vulnerability exists in the JSON component of gradio-app/gradio version 4.25. | 7.5 |
2023-12-22 | CVE-2023-51449 | Path Traversal vulnerability in Gradio Project Gradio Gradio is an open-source Python package that allows you to quickly build a demo or web application for your machine learning model, API, or any arbitary Python function. | 7.5 |
2023-12-14 | CVE-2023-6572 | Command Injection vulnerability in Gradio Project Gradio Command Injection in GitHub repository gradio-app/gradio prior to main. | 8.1 |