gradio
Python library for easily interacting with trained machine learning models
Security Advisories for gradio in pypi
Moderate
about 1 year ago
Gradio vulnerable to arbitrary file read with File and UploadButton components
pypi
gradio
Low
about 1 year ago
Gradio's dropdown component pre-process step does not limit the values to those in the dropdown list
pypi
gradio
Moderate
about 1 year ago
Gradio has an XSS on every Gradio server via upload of HTML files, JS files, or SVG files
pypi
gradio
High
about 1 year ago
Gradio uses insecure communication between the FRP client and server
pypi
gradio
High
about 1 year ago
Gradio has a race condition in update_root_in_config may redirect user traffic
pypi
gradio
Moderate
about 1 year ago
Gradio performs a non-constant-time comparison when comparing hashes
pypi
gradio
Moderate
about 1 year ago
Gradio has several components with post-process steps allow arbitrary file leaks
pypi
gradio
Low
about 1 year ago
In Gradio, the `enable_monitoring` flag set to `False` does not disable monitoring
pypi
gradio
Moderate
about 1 year ago
Gradio vulnerable to SSRF in the path parameter of /queue/join
pypi
gradio
Moderate
about 1 year ago
Gradio has a one-level read path traversal in `/custom_component`
pypi
gradio
High
about 1 year ago
Gradios's CORS origin validation is not performed when the request has a cookie
pypi
gradio
Moderate
over 1 year ago
Gradio applications running locally vulnerable to 3rd party websites accessing routes and uploading files
pypi
gradio
Moderate
over 1 year ago
Gradio's Component Server does not properly consider` _is_server_fn` for functions
pypi
gradio
High
almost 2 years ago
Gradio makes the `/file` secure against file traversal and server-side request forgery attacks
pypi
gradio
Critical
almost 2 years ago
Gradio Exposure of Sensitive Information to an Unauthorized Actor vulnerability
pypi
gradio
Moderate
over 2 years ago
Gradio vulnerable to arbitrary file read and proxying of arbitrary URLs
pypi
gradio
High
over 3 years ago
Improper Neutralization of Formula Elements in a CSV File in Gradio Flagging
pypi
gradio
Critical
almost 4 years ago
Files on the host computer can be accessed from the Gradio interface
pypi
gradio