Description
A local file include could be remotely triggered in Gradio due to a vulnerable user-supplied JSON value in an API request.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-0623 | A local file include could be remotely triggered in Gradio due to a vulnerable user-supplied JSON value in an API request. |
Github GHSA |
GHSA-f3h9-8phc-6gvh | Gradio Path Traversal vulnerability |
References
History
No history.
Status: PUBLISHED
Assigner: @huntr_ai
Published:
Updated: 2024-08-26T18:01:55.393Z
Reserved: 2024-01-26T17:49:37.055Z
Link: CVE-2024-0964
Updated: 2024-08-01T18:26:30.347Z
Status : Modified
Published: 2024-02-05T23:15:08.190
Modified: 2024-11-21T08:47:54.250
Link: CVE-2024-0964
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA