Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-r364-m2j9-mf4h: gradio Server-Side Request Forgery vulnerability

The /proxy route allows a user to proxy arbitrary urls including potential internal endpoints.

ghsa
#vulnerability#git#ssrf

gradio Server-Side Request Forgery vulnerability

High severity GitHub Reviewed Published Mar 27, 2024 to the GitHub Advisory Database • Updated Mar 27, 2024

ghsa: Latest News

GHSA-rm76-4mrf-v9r8: vLLM uses Python 3.12 built-in hash() which leads to predictable hash collisions in prefix cache