CVE-2024-39236

Gradio v4.36.1 was discovered to contain a code injection vulnerability via the component /gradio/component_meta.py. This vulnerability is triggered via a crafted input. NOTE: the supplier disputes this because the report is about a user attacking himself.
Configurations

No configuration.

History

No history.

Information

Published : 2024-07-01 19:15

Updated : 2024-07-22 07:15


NVD link : CVE-2024-39236

Mitre link : CVE-2024-39236

CVE.ORG link : CVE-2024-39236


JSON object : View

Products Affected

No product.

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')