CVE-2024-9159: Gaizhenbiao Chuanhuchatgpt

Medium severity, CVSS 6.5. EPSS: 0.6% chance of exploitation in the next 30 days.

An incorrect authorization vulnerability exists in gaizhenbiao/chuanhuchatgpt version git c91dbfc. The vulnerability allows any user to restart the server at will, leading to a complete loss of availability. The issue arises because the function responsible for restarting the server is not properly guarded by an admin check.

Affected products

Published 2025-03-20. Last modified 2026-06-17.