PT-2023-32700 · Gradio · Gradio

CVE-2023-6572

·

Publicado

2023-12-14

·

Atualizado

2024-02-28

CVSS v3.1

9.6

Crítica

VetorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions gradio versions prior to main
Description The issue concerns Exposure of Sensitive Information to an Unauthorized Actor in the GitHub repository gradio-app/gradio.
Recommendations For versions prior to main, update to the main version or later to resolve the issue.

Exploit

Correção

DoS

Command Injection

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2023-6572
GHSA-GQVF-3HGP-5HXV
PYSEC-2023-255

Produtos afetados

Gradio