cbcvebase.

Binary-Husky Gpt Academic vulnerabilities

27 known vulnerabilities affecting binary-husky/gpt_academic.

Total CVEs
27
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL3HIGH14MEDIUM10

Vulnerabilities

Page 1 of 2
CVE-2026-0764P2CRITICALCVSS 9.8v3.912026-01-23
CVE-2026-0764 [CRITICAL] CWE-502 CVE-2026-0764: GPT Academic upload Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vuln GPT Academic upload Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GPT Academic. Authentication is not required to exploit this vulnerability. The specific flaw exists within the upload endpoint. The issue results from the lack
nvd
CVE-2026-0763P2CRITICALCVSS 9.8v3.912026-01-23
CVE-2026-0763 [CRITICAL] CWE-502 CVE-2026-0763: GPT Academic run_in_subprocess_wrapper_func Deserialization of Untrusted Data Remote Code Execution GPT Academic run_in_subprocess_wrapper_func Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GPT Academic. Authentication is not required to exploit this vulnerability. The specific flaw exists within the run_in_subprocess_wrapper_
nvd
CVE-2024-31224P2CRITICALCVSS 9.8≥ 3.64-1, < 3.74v>= 3.64, < 3.742024-04-08
CVE-2024-31224 [CRITICAL] CWE-502 CVE-2024-31224: GPT Academic provides interactive interfaces for large language models. A vulnerability was found in GPT Academic provides interactive interfaces for large language models. A vulnerability was found in gpt_academic versions 3.64 through 3.73. The server deserializes untrustworthy data from the client, which may risk remote code execution. Any device that exposes the GPT Academic service to the Internet is vulnerable. Version 3.74 contains a patch
nvd
CVE-2024-12389P2HIGHCVSS 8.8v2024-10-152025-03-20
CVE-2024-12389 [HIGH] CWE-29 CVE-2024-12389: A path traversal vulnerability exists in binary-husky/gpt_academic version git 310122f. The applicat A path traversal vulnerability exists in binary-husky/gpt_academic version git 310122f. The application supports the extraction of user-provided 7z files without proper validation. The Python py7zr package used for extraction does not guarantee that files will remain within the intended extraction directory. An attacker can exploit this vulnerability t
nvd
CVE-2024-12390P2HIGHCVSS 8.8v2024-10-152025-03-20
CVE-2024-12390 [HIGH] CWE-59 CVE-2024-12390: A vulnerability in binary-husky/gpt_academic version git 310122f allows for remote code execution. T A vulnerability in binary-husky/gpt_academic version git 310122f allows for remote code execution. The application supports the extraction of user-provided RAR files without proper validation. The Python rarfile module, which supports symlinks, can be exploited to perform arbitrary file writes. This can lead to remote code execution by writing to sensi
nvd
CVE-2024-10950P2HIGHCVSS 8.8≤ 3.832025-03-20
CVE-2024-10950 [HIGH] CWE-94 CVE-2024-10950: In binary-husky/gpt_academic version <= 3.83, the plugin `CodeInterpreter` is vulnerable to code inj In binary-husky/gpt_academic version <= 3.83, the plugin `CodeInterpreter` is vulnerable to code injection caused by prompt injection. The root cause is the execution of user-provided prompts that generate untrusted code without a sandbox, allowing the execution of parts of the LLM-generated code. This vulnerability can be exploited by an attacker to a
nvd
CVE-2024-11039P3HIGHCVSS 8.8fixed in 3.912025-03-20
CVE-2024-11039 [HIGH] CWE-502 CVE-2024-11039: A pickle deserialization vulnerability exists in the Latex English error correction plug-in function A pickle deserialization vulnerability exists in the Latex English error correction plug-in function of binary-husky/gpt_academic versions up to and including 3.83. This vulnerability allows attackers to achieve remote command execution by deserializing untrusted data. The issue arises from the inclusion of numpy in the deserialization whitelist, whic
nvd
CVE-2026-0762P2HIGHCVSS 8.1v3.912026-01-23
CVE-2026-0762 [HIGH] CWE-502 CVE-2026-0762: GPT Academic stream_daas Deserialization of Untrusted Data Remote Code Execution Vulnerability. This GPT Academic stream_daas Deserialization of Untrusted Data Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of GPT Academic. Interaction with a malicious DAAS server is required to exploit this vulnerability but attack vectors may vary depending on the implementation. Th
nvd
CVE-2024-10812P3MEDIUMCVSS 6.1PoCv3.832025-03-20
CVE-2024-10812 [MEDIUM] CWE-601 CVE-2024-10812: An open redirect vulnerability exists in binary-husky/gpt_academic version 3.83. The vulnerability o An open redirect vulnerability exists in binary-husky/gpt_academic version 3.83. The vulnerability occurs when a user is redirected to a URL specified by user-controlled input in the 'file' parameter without proper validation or sanitization. This can be exploited by attackers to conduct phishing attacks, distribute malware, and steal user credentia
nvd
CVE-2024-10986P3HIGHCVSS 8.8v3.832025-03-20
CVE-2024-10986 [HIGH] CWE-59 CVE-2024-10986: GPT Academic version 3.83 is vulnerable to a Local File Read (LFI) vulnerability through its HotRelo GPT Academic version 3.83 is vulnerable to a Local File Read (LFI) vulnerability through its HotReload function. This function can download and extract tar.gz files from arxiv.org. Despite implementing protections against path traversal, the application overlooks the Tarslip triggered by symlinks. This oversight allows attackers to read arbitrary local
nvd
CVE-2025-10236P3HIGHCVSS 7.5≤ 3.91v3.0+91 more2025-09-11
CVE-2025-10236 [HIGH] CWE-22 CVE-2025-10236: A vulnerability has been found in binary-husky gpt_academic up to 3.91. Impacted is the function mer A vulnerability has been found in binary-husky gpt_academic up to 3.91. Impacted is the function merge_tex_files_ of the file crazy_functions/latex_fns/latex_toolbox.py of the component LaTeX File Handler. Such manipulation of the argument \input{} leads to path traversal. The attack may be launched remotely. The exploit has been disclosed to the publi
nvd
CVE-2024-11031P3HIGHCVSS 7.5v3.832025-03-20
CVE-2024-11031 [HIGH] CWE-918 CVE-2024-11031: In version 3.83 of binary-husky/gpt_academic, a Server-Side Request Forgery (SSRF) vulnerability exi In version 3.83 of binary-husky/gpt_academic, a Server-Side Request Forgery (SSRF) vulnerability exists in the Markdown_Translate.get_files_from_everything() API. This vulnerability is exploited through the HotReload(Markdown翻译中) plugin function, which allows downloading arbitrary web hosts by only checking if the link starts with 'http'. Attackers ca
nvd
CVE-2024-10100P3HIGHCVSS 7.5v3.832024-10-17
CVE-2024-10100 [HIGH] CWE-22 CVE-2024-10100: A path traversal vulnerability exists in binary-husky/gpt_academic version 3.83. The vulnerability i A path traversal vulnerability exists in binary-husky/gpt_academic version 3.83. The vulnerability is due to improper handling of the file parameter, which is open to path traversal through URL encoding. This allows attackers to view any file on the host system, including sensitive files such as critical application files, SSH keys, API keys, and confi
nvd
CVE-2025-25185P3HIGHCVSS 7.5≤ 3.912025-03-03
CVE-2025-25185 [HIGH] CWE-59 CVE-2025-25185: GPT Academic provides interactive interfaces for large language models. In 3.91 and earlier, GPT Aca GPT Academic provides interactive interfaces for large language models. In 3.91 and earlier, GPT Academic does not properly account for soft links. An attacker can create a malicious file as a soft link pointing to a target file, then package this soft link file into a tar.gz file and upload it. Subsequently, when accessing the decompressed file from t
nvd
CVE-2024-11030P3HIGHCVSS 7.5v3.832025-03-20
CVE-2024-11030 [HIGH] CWE-918 CVE-2024-11030: GPT Academic version 3.83 is vulnerable to a Server-Side Request Forgery (SSRF) vulnerability throug GPT Academic version 3.83 is vulnerable to a Server-Side Request Forgery (SSRF) vulnerability through its HotReload plugin function, which calls the crazy_utils.get_files_from_everything() API without proper sanitization. This allows attackers to exploit the vulnerability to abuse the victim GPT Academic's Gradio Web server's credentials to access una
nvd
CVE-2024-12392P3MEDIUMCVSS 6.5v2024-10-152025-03-20
CVE-2024-12392 [MEDIUM] CWE-918 CVE-2024-12392: A Server-Side Request Forgery (SSRF) vulnerability exists in binary-husky/gpt_academic version git 3 A Server-Side Request Forgery (SSRF) vulnerability exists in binary-husky/gpt_academic version git 310122f. The application has a functionality to download papers from arxiv.org, but the URL validation is incomplete. An attacker can exploit this vulnerability to make the application access any URL, including internal services, and read the response.
nvd
CVE-2024-10948P3MEDIUMCVSS 6.5v3.832025-03-20
CVE-2024-10948 [MEDIUM] CWE-22 CVE-2024-10948: A vulnerability in the upload function of binary-husky/gpt_academic allows any user to read arbitrar A vulnerability in the upload function of binary-husky/gpt_academic allows any user to read arbitrary files on the system, including sensitive files such as `config.py`. This issue affects the latest version of the product. An attacker can exploit this vulnerability by intercepting the websocket request during file upload and replacing the file path
nvd
CVE-2024-10714P3HIGHCVSS 7.5v3.832025-03-20
CVE-2024-10714 [HIGH] CWE-770 CVE-2024-10714: A vulnerability in binary-husky/gpt_academic version 3.83 allows an attacker to cause a Denial of Se A vulnerability in binary-husky/gpt_academic version 3.83 allows an attacker to cause a Denial of Service (DoS) by adding excessive characters to the end of a multipart boundary during file upload. This results in the server continuously processing each character and displaying warnings, rendering the application inaccessible. The issue occurs when th
nvd
CVE-2024-11037P3MEDIUMCVSS 6.5v2024-10-102025-03-20
CVE-2024-11037 [MEDIUM] CWE-22 CVE-2024-11037: A path traversal vulnerability exists in binary-husky/gpt_academic at commit 679352d, which allows a A path traversal vulnerability exists in binary-husky/gpt_academic at commit 679352d, which allows an attacker to bypass the blocked_paths protection and read the config.py file containing sensitive information such as the OpenAI API key. This vulnerability is exploitable on Windows operating systems by accessing a specific URL that includes the abso
nvd
CVE-2023-33979P3MEDIUMCVSS 6.5fixed in 3.37≤ 3.372023-05-31
CVE-2023-33979 [MEDIUM] CWE-200 CVE-2023-33979: gpt_academic provides a graphical interface for ChatGPT/GLM. A vulnerability was found in gpt_academ gpt_academic provides a graphical interface for ChatGPT/GLM. A vulnerability was found in gpt_academic 3.37 and prior. This issue affects some unknown processing of the component Configuration File Handler. The manipulation of the argument file leads to information disclosure. Since no sensitive files are configured to be off-limits, sensitive infor
nvd
Binary-Husky Gpt Academic vulnerabilities | cvebase