PT-2025-45752 · Pypi · Pdf2Zh

Published

2025-10-30

·

Updated

2025-10-30

CVSS v4.0

2.0

Low

VectorAV:N/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:N/SC:L/SI:L/SA:N/E:P
An open redirect vulnerability exists in Byaidu PDFMathTranslate v1.9.9 that allows attackers to craft URLs that cause the application to redirect users to arbitrary external websites via the file parameter to the /gradio api endpoint. This vulnerability could be exploited for phishing attacks or to bypass security filters.

Exploit

Fix

Open Redirect

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

GHSA-PFRV-63W8-Q7RQ

Affected Products

Pdf2Zh