PT-2026-22415 · Gradio · Gradio
Logicx24
·
Published
2026-02-27
·
Updated
2026-03-05
·
CVE-2026-28416
CVSS v3.1
8.6
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Gradio versions prior to 6.6.0
Description
Gradio is a Python package for rapid prototyping. A Server-Side Request Forgery (SSRF) condition exists in Gradio that allows an attacker to initiate arbitrary HTTP requests from a victim’s server. This is possible by hosting a malicious Gradio Space and leveraging the
gr.load() function to load attacker-controlled content. The malicious proxy url from the configuration is then trusted and added to an allowlist, potentially granting access to internal services, cloud metadata endpoints, and private networks via the victim's infrastructure.Recommendations
Update to version 6.6.0 or later.
Exploit
Fix
SSRF
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Gradio