<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T22:17:31.078124+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/cve-2024-10648</id>
    <title>CVE-2024-10648 — Path Traversal in gradio-app/gradio</title>
    <updated>2026-10-04T22:17:31.080368+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> gradio-app/gradio</p>
<p>A path traversal vulnerability exists in the Gradio Audio component of gradio-app/gradio, as of version git 98cbcae. This vulnerability allows an attacker to control the format of the audio file, leading to arbitrary file content deletion. By manipulating the output format, an attacker can reset any file to an empty file, causing a denial of service (DOS) on the server.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/cve-2024-10648"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-pgfv-gvc5-prfg</id>
    <title>GHSA-pgfv-gvc5-prfg — Gradio Vulnerable to Arbitrary File Deletion</title>
    <updated>2026-10-04T22:17:31.080424+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> PyPI: gradio</p>
<p>A path traversal vulnerability exists in the Gradio Audio component of gradio-app/gradio, as of version git 98cbcae. This vulnerability allows an attacker to control the format of the audio file, leading to arbitrary file content deletion. By manipulating the output format, an attacker can reset any file to an empty file, causing a denial of service (DOS) on the server.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-pgfv-gvc5-prfg"/>
  </entry>
</feed>
