google / tsunami-security-scanner-plugins

This project aims to provide a central repository for many useful Tsunami Security Scanner plugins.
Apache License 2.0
860 stars 178 forks source link

AI PRP: Gardio Arbitrary File Read CVE-2024-1561 #483

Open secureness opened 1 month ago

secureness commented 1 month ago

reference; https://github.com/protectai/ai-exploits/blob/main/gradio/README.md it is another Path injection vulnerability (file read) and all Gradio versions before 4.3.0 are vulnerable to this.