Логотип exploitDog
bind:CVE-2024-8966
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-8966

Количество 2

Количество 2

nvd логотип

CVE-2024-8966

11 месяцев назад

A vulnerability in the file upload process of gradio-app/gradio version @gradio/video@0.10.2 allows for a Denial of Service (DoS) attack. An attacker can append a large number of characters to the end of a multipart boundary, causing the system to continuously process each character and issue warnings. This can render Gradio inaccessible for extended periods, disrupting services and causing significant downtime.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-5cpq-9538-jm2j

11 месяцев назад

Gradio DOS in multipart boundry while uploading the file

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-8966

A vulnerability in the file upload process of gradio-app/gradio version @gradio/video@0.10.2 allows for a Denial of Service (DoS) attack. An attacker can append a large number of characters to the end of a multipart boundary, causing the system to continuously process each character and issue warnings. This can render Gradio inaccessible for extended periods, disrupting services and causing significant downtime.

CVSS3: 7.5
0%
Низкий
11 месяцев назад
github логотип
GHSA-5cpq-9538-jm2j

Gradio DOS in multipart boundry while uploading the file

CVSS3: 7.5
0%
Низкий
11 месяцев назад

Уязвимостей на страницу