Skip to content
GradioGHSA-3qqg-pgqq-3695

Gradio vulnerable to arbitrary file read and proxying of arbitrary URLs

Medium7.3CVE-2023-34239 · Published Jun 9, 2023 · updated Sep 10, 2026

### Impact There are two separate security vulnerabilities here: (1) a security vulnerability that allows users to read arbitrary files on the machines that are running shared Gradio apps (2) the ability of users to use machines that are sharing Gradio apps to proxy arbitrary URLs ### Patches Both problems have been solved, please upgrade `gradio` to `3.34.0` or higher ### Workarounds Not possible to workaround except by taking down any shared Gradio apps ### References Relevant PRs: * https://github.com/gradio-app/gradio/pull/4406 * https://github.com/gradio-app/gradio/pull/4370

GitHub advisory

Affected versions

PackageAffectedFixed in
gradio
PyPI
< 3.34.03.34.0
Details and references

More Gradio advisories

All Gradio
Advisory
Gradio apps vulnerable to timing attacks to guess password
Medium5.9Feb 22, 2024
Gradio Path Traversal vulnerability
High7.5Feb 6, 2024
Gradio makes the `/file` secure against file traversal and server-side request forgery attacks
High8.6Dec 21, 2023
Gradio Exposure of Sensitive Information to an Unauthorized Actor vulnerability
Critical9.6Dec 14, 2023
Gradio arbitrary file upload vulnerability
Medium4.8Sep 16, 2023
Update share links to use FRP instead of SSH tunneling
Medium5.4Feb 23, 2023

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.