SOURCE-LINKED INTELLIGENCE
GHSA-v4q9-qgqf-7jwp: Gradio arbitrary file upload vulnerability
Gradio v3.27.0 was discovered to contain an arbitrary file upload vulnerability via the `/upload` interface.
Read original source ↗ Open in workspace
- recordType
- vulnerability
- status
- active
- evidenceStatus
- reported
- region
- Global
Evidence & attribution
- OSV AI package advisories · 2023-09-16T00:30:30.000Z
- OSV AI package advisories · 2026-07-07T11:45:24.600Z
First collected: 2026-09-19T20:28:21.856Z. This is not the publication date.