Gradio v3.27.0 was discovered to contain an arbitrary file upload vulnerability via the /upload interface.
{
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/41xxx/CVE-2023-41626.json",
"cna_assigner": "mitre"
}