{"id":"CVE-2024-8021","details":"An open redirect vulnerability exists in the latest version of gradio-app/gradio. The vulnerability allows an attacker to redirect users to a malicious website by URL encoding. This can be exploited by sending a crafted request to the application, which results in a 302 redirect to an attacker-controlled site.","aliases":["GHSA-7v2w-h4gh-w5cv"],"modified":"2026-03-14T12:40:50.888047Z","published":"2025-03-20T10:15:39.260Z","references":[{"type":"EVIDENCE","url":"https://huntr.com/bounties/adc23067-ec04-47ef-9265-afd452071888"}],"affected":[{"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-8021.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"}]}