CVE-2024-0964: Gradio Project Gradio

Critical severity, CVSS 9.4. EPSS: 1% chance of exploitation in the next 30 days.

A local file include could be remotely triggered in Gradio due to a vulnerable user-supplied JSON value in an API request.

Affected products

Published 2024-02-05. Last modified 2026-06-17.