High severity7.5NVD Advisory· Published Mar 20, 2025· Updated Jun 17, 2026
CVE-2024-12065
CVE-2024-12065
Description
A local file inclusion vulnerability exists in haotian-liu/llava at commit c121f04. This vulnerability allows an attacker to access any file on the system by sending multiple crafted requests to the server. The issue is due to improper input validation in the gradio web UI component.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2commit c121f04+ 1 more
- (no CPE)range: commit c121f04
- (no CPE)range: unspecified
Patches
Vulnerability mechanics
References
1- huntr.com/bounties/0594503c-038f-401c-9127-08be32bfd682nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.