← Vulnerability feed

Vulnerability record · CVE-2025-23042 · published 14 January 2025

CVE-2025-23042: Gradio project gradio improper authorization vulnerability

Gradio Project · Gradio

Gradio is an open-source Python package that allows quick building of demos and web application for machine learning models, API, or any arbitrary Python function. Gradio's Access Control List (ACL) for file paths can be bypassed by altering the letter case of a blocked file or directory path. This vulnerability arises due to the lack of case normalization in the file path validation logic. On case-insensitive file systems, such as those used by Windows and macOS, this flaw enables attackers to circumvent security restrictions and access sensitive files that should be protected. This issue can lead to unauthorized data access, exposing sensitive information and undermining the integrity of Gradio's security model. Given Gradio's popularity for building web applications, particularly in machine learning and AI, this vulnerability may pose a substantial threat if exploited in production environments. This issue has been addressed in release version 5.6.0. Users are advised to upgrade. There are no known workarounds for this vulnerability.

8.7 CVSS 4.0 High EPSS 0.98% · top 39.2% CWE-285 · Improper authorization
8.7CVSS 4.0 base score
0.98%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
1References, 1 tagged exploit
17 Jun 2026Last modified by NVD

Description

Gradio is an open-source Python package that allows quick building of demos and web application for machine learning models, API, or any arbitrary Python function. Gradio's Access Control List (ACL) for file paths can be bypassed by altering the letter case of a blocked file or directory path. This vulnerability arises due to the lack of case normalization in the file path validation logic. On case-insensitive file systems, such as those used by Windows and macOS, this flaw enables attackers to circumvent security restrictions and access sensitive files that should be protected. This issue can lead to unauthorized data access, exposing sensitive information and undermining the integrity of Gradio's security model. Given Gradio's popularity for building web applications, particularly in machine learning and AI, this vulnerability may pose a substantial threat if exploited in production environments. This issue has been addressed in release version 5.6.0. Users are advised to upgrade. There are no known workarounds for this vulnerability.

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2025-23042 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2024-39236Gradio project gradio code injection vulnerabilityGradio v4.36.1 was discovered to contain a code injection vulnerability via the component /gradio/component_meta.py. This vulnerability is triggered …EPSS 0.87%9.8CVE-2023-25823Gradio project gradio hard-coded credentials vulnerabilityGradio is an open-source Python library to build machine learning and data science demos and web applications. Versions prior to 3.13.1 contain Use o…EPSS 0.55%9.4CVE-2024-0964Gradio project gradio path traversal vulnerabilityA local file include could be remotely triggered in Gradio due to a vulnerable user-supplied JSON value in an API request.EPSS 0.96%9.1CVE-2024-4253Gradio project gradio os command injection vulnerabilityA command injection vulnerability exists in the gradio-app/gradio repository, specifically within the 'test-functional.yml' workflow. The vulnerabili…EPSS 1.7%9.1CVE-2023-34239Gradio project gradio improper input validation vulnerabilityGradio is an open-source Python library that is used to build machine learning and data science. Due to a lack of path filtering Gradio does not prop…EPSS 0.65%8.8CVE-2022-24770Gradio project gradio csv injection vulnerability`gradio` is an open source framework for building interactive machine learning models and demos. Prior to version 2.8.11, `gradio` suffers from Impro…EPSS 1.3%8.7CVE-2026-49119Gradio project gradio path traversal vulnerabilityGradio before 6.16.0 contain a path traversal vulnerability in the FileExplorer component's preprocess() method that allows unauthenticated attackers…EPSS 0.93%8.6CVE-2026-28416Gradio project gradio server-side request forgery (ssrf) vulnerabilityGradio is an open-source Python package designed for quick prototyping. Prior to version 6.6.0, a Server-Side Request Forgery (SSRF) vulnerability in…EPSS 0.35%

Source: NIST National Vulnerability Database (record CVE-2025-23042), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.