Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2975▼ 108 respecto a la semana anterior
Críticas / altas1449▲ 87 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
57 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Baja (2.3) | 0.29% | — | Gradio Project Gradio | 10/10/2024 | 17/6/2026 | Gradio is an open-source Python package designed for quick prototyping. This vulnerability involves a **timing attack** in the way Gradio compares hashes for the `analytics_dashboard` function. Since the comparison is not done in constant time, an attacker could exploit this by measuring the response time of different… | |
| Analizada | Media (6.3) | 0.81% | — | Gradio Project Gradio | 10/10/2024 | 17/6/2026 | Gradio is an open-source Python package designed for quick prototyping. This is a **data validation vulnerability** affecting several Gradio components, which allows arbitrary file leaks through the post-processing step. Attackers can exploit these components by crafting requests that bypass expected input… | |
| Analizada | Baja (2.1) | 0.21% | — | Gradio Project Gradio | 10/10/2024 | 17/6/2026 | Gradio is an open-source Python package designed for quick prototyping. This vulnerability is a **lack of integrity check** on the downloaded FRP client, which could potentially allow attackers to introduce malicious code. If an attacker gains access to the remote URL from which the FRP client is downloaded, they… | |
| Analizada | Baja (2.3) | 0.33% | — | Gradio Project Gradio | 10/10/2024 | 17/6/2026 | Gradio is an open-source Python package designed for quick prototyping. This vulnerability involves data exposure due to the enable_monitoring flag not properly disabling monitoring when set to False. Even when monitoring is supposedly disabled, an attacker or unauthorized user can still access the monitoring… | |
| Analizada | Media (6.9) | 0.48% | 💥 PoC | Gradio Project Gradio | 10/10/2024 | 17/6/2026 | Gradio is an open-source Python package designed for quick prototyping. This vulnerability relates to **Server-Side Request Forgery (SSRF)** in the `/queue/join` endpoint. Gradio’s `async_save_url_to_cache` function allows attackers to force the Gradio server to send HTTP requests to user-controlled URLs. This could… | |
| Analizada | Baja (2.3) | 0.43% | — | Gradio Project Gradio | 10/10/2024 | 17/6/2026 | Gradio is an open-source Python package designed for quick prototyping. This vulnerability involves a **one-level read path traversal** in the `/custom_component` endpoint. Attackers can exploit this flaw to access and leak source code from custom Gradio components by manipulating the file path in the request.… | |
| Analizada | Media (6.9) | 0.30% | — | Gradio Project Gradio | 10/10/2024 | 17/6/2026 | Gradio is an open-source Python package designed for quick prototyping. This vulnerability relates to **CORS origin validation accepting a null origin**. When a Gradio server is deployed locally, the `localhost_aliases` variable includes "null" as a valid origin. This allows attackers to make unauthorized requests… | |
| Analizada | Baja (2.3) | 0.70% | — | Gradio Project Gradio | 10/10/2024 | 17/6/2026 | Gradio is an open-source Python package designed for quick prototyping. This vulnerability relates to the **bypass of directory traversal checks** within the `is_in_or_equal` function. This function, intended to check if a file resides within a given directory, can be bypassed with certain payloads that manipulate… | |
| Analizada | Media (6.9) | 0.53% | — | Gradio Project Gradio | 10/10/2024 | 17/6/2026 | Gradio is an open-source Python package designed for quick prototyping. This vulnerability is related to **CORS origin validation**, where the Gradio server fails to validate the request origin when a cookie is present. This allows an attacker’s website to make unauthorized requests to a local Gradio server.… | |
| Analizada | Crítica (9.8) | 0.87% | — | Gradio Project Gradio | 1/7/2024 | 17/6/2026 | Gradio v4.36.1 was discovered to contain a code injection vulnerability via the component /gradio/component_meta.py. This vulnerability is triggered via a crafted input. NOTE: the supplier disputes this because the report is about a user attacking himself. | |
| Analizada | Media (6.1) | 1.0% | 💥 Exploit | Gradio Project Gradio | 22/6/2024 | 17/6/2026 | An open redirect vulnerability exists in the gradio-app/gradio, affecting the latest version. The vulnerability allows an attacker to redirect users to arbitrary websites, which can be exploited for phishing attacks, Cross-site Scripting (XSS), Server-Side Request Forgery (SSRF), amongst others. This issue is due to… | |
| Modificada | Alta (7.5) | 0.83% | — | Gradio Project Gradio | 6/6/2024 | 17/6/2026 | A local file inclusion vulnerability exists in the JSON component of gradio-app/gradio version 4.25. The vulnerability arises from improper input validation in the `postprocess()` function within `gradio/components/json_component.py`, where a user-controlled string is parsed as JSON. If the parsed JSON object contains… | |
| Modificada | Alta (8.6) | 37% | 💥 Exploit | Gradio Project Gradio | 6/6/2024 | 17/6/2026 | A Server-Side Request Forgery (SSRF) vulnerability exists in the gradio-app/gradio version 4.21.0, specifically within the `/queue/join` endpoint and the `save_url_to_cache` function. The vulnerability arises when the `path` value, obtained from the user and expected to be a URL, is used to make an HTTP request… | |
| Modificada | Alta (7.1) | 0.47% | 💥 PoC | Gradio Project Gradio | 4/6/2024 | 17/6/2026 | The 'deploy-website.yml' workflow in the gradio-app/gradio repository, specifically in the 'main' branch, is vulnerable to secrets exfiltration due to improper authorization. The vulnerability arises from the workflow's explicit checkout and execution of code from a fork, which is unsafe as it allows the running of… | |
| Modificada | Crítica (9.1) | 1.7% | 💥 PoC | Gradio Project Gradio | 4/6/2024 | 17/6/2026 | A command injection vulnerability exists in the gradio-app/gradio repository, specifically within the 'test-functional.yml' workflow. The vulnerability arises due to improper neutralization of special elements used in a command, allowing for unauthorized modification of the base repository or secrets exfiltration. The… | |
| Analizada | Alta (7.5) | 0.57% | — | Gradio Project Gradio | 5/5/2024 | 17/6/2026 | Gradio before 4.20 allows credential leakage on Windows. | |
| Analizada | Alta (7.5) | 9.3% | 💥 Exploit | Gradio Project Gradio | 16/4/2024 | 17/6/2026 | An issue was discovered in gradio-app/gradio, where the `/component_server` endpoint improperly allows the invocation of any method on a `Component` class with attacker-controlled arguments. Specifically, by exploiting the `move_resource_to_block_cache()` method of the `Block` class, an attacker can copy any file on… | |
| Analizada | Media (6.5) | 1.8% | 💥 Exploit | Gradio Project Gradio | 16/4/2024 | 17/6/2026 | An SSRF (Server-Side Request Forgery) vulnerability exists in the gradio-app/gradio repository, allowing attackers to scan and identify open ports within an internal network. By manipulating the 'file' parameter in a GET request, an attacker can discern the status of internal ports based on the presence of a… | |
| Aplazada | Media (6.3) | 0.68% | — | GradioAIAutomatic1111 Stable-diffusion-webuiAI | 12/4/2024 | 17/6/2026 | stable-diffusion-webui is a web interface for Stable Diffusion, implemented using Gradio library. Stable-diffusion-webui 1.7.0 is vulnerable to a limited file write affecting Windows systems. The create_ui method (Backup/Restore tab) in modules/ui_extensions.py takes user input into the config_save_name variable on… | |
| Analizada | Alta (7.5) | 85% | 💥 Exploit | Gradio Project Gradio | 10/4/2024 | 17/6/2026 | gradio-app/gradio is vulnerable to a local file inclusion vulnerability due to improper validation of user-supplied input in the UploadButton component. Attackers can exploit this vulnerability to read arbitrary files on the filesystem, such as private SSH keys, by manipulating the file path in the request to the… | |
| Analizada | Media (5.9) | 0.50% | — | Gradio Project Gradio | 29/3/2024 | 17/6/2026 | A timing attack vulnerability exists in the gradio-app/gradio repository, specifically within the login function in routes.py. The vulnerability arises from the use of a direct comparison operation (`app.auth[username] == password`) to validate user credentials, which can be exploited to guess passwords based on… | |
| Analizada | Alta (8.2) | 2.0% | 💥 PoC | Gradio Project Gradio | 27/3/2024 | 17/6/2026 | A command injection vulnerability exists in the deploy+test-visual.yml workflow of the gradio-app/gradio repository, due to improper neutralization of special elements used in a command. This vulnerability allows attackers to execute unauthorized commands, potentially leading to unauthorized modification of the base… | |
| Analizada | Media (6.5) | 0.42% | — | Gradio Project Gradio | 27/3/2024 | 17/6/2026 | An SSRF vulnerability exists in the gradio-app/gradio due to insufficient validation of user-supplied URLs in the `/proxy` route. Attackers can exploit this vulnerability by manipulating the `self.replica_urls` set through the `X-Direct-Url` header in requests to the `/` and `/config` routes, allowing the addition of… | |
| Analizada | Media (4.3) | 0.35% | — | Gradio Project Gradio | 21/3/2024 | 17/6/2026 | A Cross-Site Request Forgery (CSRF) vulnerability in gradio-app/gradio allows attackers to upload multiple large files to a victim's system if they are running Gradio locally. By crafting a malicious HTML page that triggers an unauthorized file upload to the victim's server, an attacker can deplete the system's disk… | |
| Modificada | Crítica (9.4) | 0.96% | — | Gradio Project Gradio | 5/2/2024 | 17/6/2026 | A local file include could be remotely triggered in Gradio due to a vulnerable user-supplied JSON value in an API request. |