CVE-2023-51449 Scanner
CVE-2023-51449 Scanner - Local File Inclusion (LFI) vulnerability in Gradio
Used 2.6k times · 3.3k assets checked · domain, ipv4, subdomain
Gradio is an open-source Python package that allows you to quickly build a demo or web application for your machine learning model, API, or any arbitary Python function. Versions of `gradio` prior to 4.11.0 contained a vulnerability in the `/file` route which made them susceptible to file traversal attacks in which an attacker could access arbitrary files on a machine running a Gradio app with a public URL (e.g. if the demo was created with `share=True`, or on Hugging Face Spaces) if they knew the path of files to look for. This issue has been patched in version 4.11.0.
CVE-2023-51449 Scanner - Local File Inclusion (LFI) vulnerability in Gradio
Used 2.6k times · 3.3k assets checked · domain, ipv4, subdomain
S4E maps published CVEs to scanners and forecasts the next disclosure window for your stack.
Create a free account →