Binary-husky

Gpt Academic

26 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.1%
  • Veröffentlicht 20.03.2025 10:08:57
  • Zuletzt bearbeitet 31.07.2025 14:51:12

A path traversal vulnerability exists in binary-husky/gpt_academic at commit 679352d, which allows an attacker to bypass the blocked_paths protection and read the config.py file containing sensitive information such as the OpenAI API key. This vulner...

Exploit
  • EPSS 0.24%
  • Veröffentlicht 03.03.2025 16:15:42
  • Zuletzt bearbeitet 07.03.2025 19:45:52

GPT Academic provides interactive interfaces for large language models. In 3.91 and earlier, GPT Academic does not properly account for soft links. An attacker can create a malicious file as a soft link pointing to a target file, then package this so...

Exploit
  • EPSS 0.23%
  • Veröffentlicht 17.10.2024 19:15:21
  • Zuletzt bearbeitet 11.07.2025 20:44:32

A stored cross-site scripting (XSS) vulnerability exists in binary-husky/gpt_academic version 3.83. The vulnerability occurs at the /file endpoint, which renders HTML files. Malicious HTML files containing XSS payloads can be uploaded and stored in t...

Exploit
  • EPSS 0.38%
  • Veröffentlicht 17.10.2024 19:15:21
  • Zuletzt bearbeitet 11.07.2025 20:45:41

A path traversal vulnerability exists in binary-husky/gpt_academic version 3.83. The vulnerability is due to improper handling of the file parameter, which is open to path traversal through URL encoding. This allows attackers to view any file on the ...

  • EPSS 5.83%
  • Veröffentlicht 08.04.2024 16:15:07
  • Zuletzt bearbeitet 04.11.2025 18:38:03

GPT Academic provides interactive interfaces for large language models. A vulnerability was found in gpt_academic versions 3.64 through 3.73. The server deserializes untrustworthy data from the client, which may risk remote code execution. Any device...

  • EPSS 0.36%
  • Veröffentlicht 31.05.2023 19:15:27
  • Zuletzt bearbeitet 07.03.2025 15:30:57

gpt_academic provides a graphical interface for ChatGPT/GLM. A vulnerability was found in gpt_academic 3.37 and prior. This issue affects some unknown processing of the component Configuration File Handler. The manipulation of the argument file leads...