NA

CVE-2024-0964

Published: 05/02/2024 Updated: 13/02/2024
CVSS v3 Base Score: 9.4 | Impact Score: 5.5 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

A local file include could be remotely triggered in Gradio due to a vulnerable user-supplied JSON value in an API request.

Vulnerable Product Search on Vulmon Subscribe to Product

gradio project gradio -

Github Repositories

keep watching new bug bounty (vulnerability) postings.

huntrcom bugs collector New bug bounty(vulnerabilities) collector Requirements Chrome with GUI (If you encounter trouble with script execution, check the status of VMs GPU features, if available) Chrome WebDriver Preview # python3 mainpy *2024-02-20 16:14:47836189* 1 Arbitrary File Reading due to Lack of Input Filepath Validation - Feb 6th 2024 / High (CVE-2024-096