Loading HuntDB...

GaiZhenbiao

2 Products 22 CVEs

CVE Severity Distribution (All Time)

Critical
2
High
14
Medium
6
Low
0

Timeline Overview

Last 30 Days 0 CVEs
Last 6 Months 0 CVEs
Last Year 10 CVEs

Recent CVEs

View all
CVE-2024-48059 MEDIUM 8 months ago

gaizhenbiao/chuanhuchatgpt project, version <=20240802 is vulnerable to stored Cross-Site Scripting (XSS) in WebSocket session transmission. An attac…

CVE-2024-8143 MEDIUM 8 months, 1 week ago

In the latest version (20240628) of gaizhenbiao/chuanhuchatgpt, an issue exists in the /file endpoint that allows authenticated users to access the c…

CVE-2024-5823 MEDIUM 8 months, 1 week ago

A file overwrite vulnerability exists in gaizhenbiao/chuanhuchatgpt versions <= 20240410. This vulnerability allows an attacker to gain unauthorized …

CVE-2024-7807 HIGH 8 months, 1 week ago

A vulnerability in gaizhenbiao/chuanhuchatgpt version 20240628 allows for a Denial of Service (DOS) attack. When uploading a file, if an attacker app…

CVE-2024-7962 HIGH 8 months, 1 week ago

An arbitrary file read vulnerability exists in gaizhenbiao/chuanhuchatgpt version 20240628 due to insufficient validation when loading prompt templat…

CVE-2024-5982 CRITICAL 8 months, 1 week ago

A path traversal vulnerability exists in the latest version of gaizhenbiao/chuanhuchatgpt. The vulnerability arises from unsanitized input handling i…

CVE-2024-6255 HIGH 11 months, 1 week ago

A vulnerability in the JSON file handling of gaizhenbiao/chuanhuchatgpt version 20240410 allows any user to delete any JSON file on the server, inclu…

CVE-2024-6035 HIGH 11 months, 3 weeks ago

A Stored Cross-Site Scripting (XSS) vulnerability exists in gaizhenbiao/chuanhuchatgpt version 20240410. This vulnerability allows an attacker to inj…

CVE-2024-6036 HIGH 11 months, 3 weeks ago

A vulnerability in gaizhenbiao/chuanhuchatgpt version 20240410 allows any user to restart the server at will by sending a specific request to the `/q…

CVE-2024-6037 HIGH 11 months, 3 weeks ago

A vulnerability in gaizhenbiao/chuanhuchatgpt version 20240410 allows an attacker to create arbitrary folders at any location on the server, includin…