Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 28 Apr 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Oobabooga textgen
|
|
| CPEs | cpe:2.3:a:oobabooga:textgen:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Oobabooga textgen
|
Wed, 08 Apr 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Oobabooga
Oobabooga text-generation-webui |
|
| Vendors & Products |
Oobabooga
Oobabooga text-generation-webui |
Tue, 07 Apr 2026 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 07 Apr 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | text-generation-webui is an open-source web interface for running Large Language Models. Prior to 4.3, an unauthenticated path traversal vulnerability in load_grammar() allows reading any file on the server filesystem with no extension restriction. Gradio does not server-side validate dropdown values, so an attacker can POST directory traversal payloads (e.g., ../../../etc/passwd) via the API and receive the full file contents in the response. This vulnerability is fixed in 4.3. | |
| Title | text-generation-webui has a Path Traversal in load_grammar() — arbitrary file read without authentication | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-04-07T15:58:51.812Z
Reserved: 2026-04-02T20:49:44.454Z
Link: CVE-2026-35485
Updated: 2026-04-07T15:11:45.710Z
Status : Analyzed
Published: 2026-04-07T15:17:45.677
Modified: 2026-04-28T20:41:33.130
Link: CVE-2026-35485
No data.
OpenCVE Enrichment
Updated: 2026-04-08T19:48:40Z