CVE-2025-45424: Xinference
Medium severity, CVSS 5.3. EPSS: 0.4% chance of exploitation in the next 30 days.
Incorrect access control in Xinference before v1.4.0 allows attackers to access the Web GUI without authentication.
Affected products
- Xinference Xinference: before 1.4.0 (fixed in 1.4.0)
Published 2025-07-02. Last modified 2026-06-17.