Gradio

Latest version: v4.31.5

Vulnerabilities (14)

CVE/PVE Vulnerability ID Advisory Affected versions Severity Severity Score
CVE-2024-0964 66708

A local file include could be remotely triggered in Gradio due to a v…

  • <4.9.0
CRITICAL 9.4
PVE-2024-66799 66799

Gradio version 4.22.0 addresses a race condition that impacted the sy…

  • <4.22.0
- -
PVE-2024-99761 66709

A local file include could be remotely triggered in Gradio due to a v…

  • <4.19.2
- -
PVE-2024-65402 65402

Gradio version 4.19.1 introduces security enhancements to protect aga…

  • <4.19.1
- -
CVE-2023-6572 70406

Exposure of Sensitive Information to an Unauthorized Actor in GitHub …

  • <4.14.0
HIGH 8.1
CVE-2023-51449 63108

Gradio has a vulnerability in versions prior to 4.11.0, allowing file…

  • <4.11.0
HIGH 7.5
PVE-2023-62973 62973

Gradio 4.10.0 includes a fix for a SSRF vulnerability on '/file=' rou…

  • <4.10.0
- -
CVE-2023-34239 58902

Gradio 3.34.0 includes a fix for a path traversal vulnerability. htt…

  • <=3.33.1
CRITICAL 9.1
CVE-2023-41626 65231

Gradio v3.27.0 was discovered to contain an arbitrary file upload vul…

  • ==3.27.0
MEDIUM 4.8
CVE-2023-25823 53453

Gradio 3.19.1 includes a fix for CVE-2023-25823: When using Gradio's …

  • <3.19.1
CRITICAL 9.8
PVE-2022-52426 52426

Gradio 3.13.1 adds HTTPS for the share links. https://github.com/gra…

  • <3.13.1
- -
PVE-2021-43619 43619

Gradio 2.6.0 fixes arbitrary file read vulnerabilities. https://gith…

  • <2.6.0
HIDDEN X.Y
CVE-2022-24770 54509

`gradio` is an open source framework for building interactive machine…

  • >=0,<2.8.11
HIGH 8.8
CVE-2021-43831 54307

Gradio is an open source framework for building interactive machine l…

  • >=0,<2.5.0
HIGH 7.7