Medium severity4.8NVD Advisory· Published Sep 15, 2023· Updated Jun 17, 2026
CVE-2023-41626
CVE-2023-41626
Description
Gradio v3.27.0 was discovered to contain an arbitrary file upload vulnerability via the /upload interface.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
gradioPyPI | <= 3.27.0 | — |
Affected products
2- cpe:2.3:a:gradio_project:gradio:3.27.0:*:*:*:*:python:*:*
Patches
Vulnerability mechanics
References
3- gist.github.com/impose1/590472eb0544ef1ec36c8a5a40122adbnvdThird Party AdvisoryWEB
- github.com/advisories/GHSA-v4q9-qgqf-7jwpghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2023-41626ghsaADVISORY
News mentions
0No linked articles in our index yet.