GradioGHSA-wmjh-cpqj-4v6x
Gradio CORS Origin Validation Bypass Vulnerability
Low3.7CVE-2025-5320 · Published May 29, 2025 · updated Jul 7, 2026
A vulnerability classified as problematic has been found in gradio-app gradio up to 5.29.1. This affects the function is_valid_origin of the component CORS Handler. The manipulation of the argument localhost_aliases leads to origin validation error. It is possible to initiate the attack remotely. The complexity of an attack is rather high. The exploitability is told to be difficult. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| gradio PyPI | >= 5.0.0, <= 5.29.1 | No fix yet |
Details and references
- CVSS 3.1
- CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
- Severity from
- GitHub (reviewed advisory)
- Weakness
- CWE-345
- Also known as
- CVE-2025-5320, PYSEC-2026-1423
More Gradio advisories
All Gradio| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| May 292025 | Gradio Allows Unauthorized File Copy via Path Manipulation | Medium5.3 | 5.31.0 |
| Mar 202025 | Gradio DOS in multipart boundry while uploading the file | High7.5 | No fix yet |
| Mar 202025 | Gradio Vulnerable to Open Redirect | Medium5.4 | No fix yet |
| Mar 202025 | Gradio Path Traversal vulnerability | Medium5.3 | No fix yet |
| Mar 202025 | Gradio Vulnerable to Denial of Service (DoS) via Crafted Zip Bomb | High7.5 | No fix yet |
| Mar 202025 | Gradio Vulnerable to Arbitrary File Deletion | High8.2 | No fix yet |