CVE-2026-48545
Last modified
CVE-2026-48545 is a medium-severity vulnerability rated 6.8/10 on the CVSS scale. Gradio before version 6.15.0 contains a cookie injection vulnerability that allows remote attackers to perform cross-Space session fixation by exploiting a shared module-level HTTP client used across all users in the reverse proxy endpoint. Attackers controlling any HF Space can return a parent-domain cookie that the shared client stores and automatically replays into all subsequent proxy requests to other legitimate Spaces, affecting all users of the same Gradio deployment.. EPSS estimates a 0.35% chance of exploitation in the next 30 days.
Description
Gradio before version 6.15.0 contains a cookie injection vulnerability that allows remote attackers to perform cross-Space session fixation by exploiting a shared module-level HTTP client used across all users in the reverse proxy endpoint. Attackers controlling any HF Space can return a parent-domain cookie that the shared client stores and automatically replays into all subsequent proxy requests to other legitimate Spaces, affecting all users of the same Gradio deployment.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Gradio Project | Gradio | < 6.15.0 |
References
- https://github.com/gradio-app/gradio/issues/13369Issue Tracking
- https://github.com/gradio-app/gradio/pull/13384Issue Tracking, Patch
- https://github.com/gradio-app/gradio/releases/tag/gradio%406.15.0Product, Release Notes
- https://github.com/gradio-app/gradio/issues/13369Issue Tracking
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-48545?
How severe is CVE-2026-48545?
How do I fix CVE-2026-48545?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-48539GFI Archiver before 15.13 contains a stored cross-site scrip…5.4
- CVE-2026-48540Krayin CRM through 2.2.6 contains a stored client-side templ…5.4
- CVE-2026-48541Krayin CRM through 2.2.6 contains a stored client-side templ…5.4
- CVE-2026-48542Krayin CRM through 2.2.6 contains a stored client-side templ…5.4
- CVE-2026-48543Krayin CRM through 2.2.6 contains a stored client-side templ…5.4
- CVE-2026-48544Taipy 4.1.1, fixed in commit 129fd40, contains a path traver…8.7
- CVE-2026-48546KanaDojo before 0.1.18 contains a sandbox escape vulnerabili…8.5
- CVE-2026-48547KanaDojo contains a command injection vulnerability that all…8.5
- CVE-2026-48548Nagios Core before 4.5.12 contains a cross-site request forg…6.5
- CVE-2026-48549Nagios Core before 4.5.13 and Nagios XI before 2026R1.5 cont…6.5
- CVE-2026-48550Nagios Core before 4.5.14 and Nagios XI before 2026R1.7 are …6.1
- CVE-2026-48551Nagios Core before 4.5.14 and Nagios XI before 2026R1.7 cont…7.4
Are you affected by CVE-2026-48545?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
