PT-2026-22415 · Gradio · Gradio

Logicx24

·

Published

2026-02-27

·

Updated

2026-03-05

·

CVE-2026-28416

CVSS v3.1

8.6

High

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Gradio versions prior to 6.6.0
Description Gradio is a Python package for rapid prototyping. A Server-Side Request Forgery (SSRF) condition exists in Gradio that allows an attacker to initiate arbitrary HTTP requests from a victim’s server. This is possible by hosting a malicious Gradio Space and leveraging the gr.load() function to load attacker-controlled content. The malicious proxy url from the configuration is then trusted and added to an allowlist, potentially granting access to internal services, cloud metadata endpoints, and private networks via the victim's infrastructure.
Recommendations Update to version 6.6.0 or later.

Exploit

Fix

SSRF

Weakness Enumeration

Related Identifiers

CVE-2026-28416
GHSA-JMH7-G254-2CQ9
PYSEC-2026-66

Affected Products

Gradio