MIRAGE
Threat IntelligenceCVEs › CVE-2021-43831

CVE-2021-43831 — exposed on the internet

Internet exposure observed by OffSeq scans · last 30 days

9
Exposed hosts
7.7
CVSS
3.8%
EPSS

Found on 9 internet-exposed hosts by OffSeq scans; no in-the-wild exploitation has been observed against OffSeq honeypots in this window.

About CVE-2021-43831

Gradio is an open source framework for building interactive machine learning models and demos. In versions prior to 2.5.0 there is a vulnerability that affects anyone who creates and publicly shares Gradio interfaces. File paths are not restricted and users who receive a Gradio link can access any files on the host computer if they know the file names or file paths. This is limited only by the host operating system. Paths are opened in read only mode. The problem has been patched in gradio 2.5.0.

CWE-22

OffSeq internet scanning found CVE-2021-43831 on 9 exposed hosts in the last 30 days. OffSeq honeypots have not recorded in-the-wild exploitation of this CVE in the current window — this page tracks its exposure footprint and status; if exploitation begins, the live honeypot signal will appear here.

Exposed-host countries

Exposed via

grafana http

Open the live CVE-2021-43831 view →

References