{"id":"CVE-2026-48545","aliases":["GHSA-7hp7-4p35-3cx2","PYSEC-2026-2178"],"url":"https://o3.security/vulnerability/CVE-2026-48545","summary":"Gradio < 6.15.0 Cookie Injection via Shared Proxy Client","details":"Gradio before version 6.15.0 contains a cookie injection vulnerability that allows remote attackers to perform cross-Space session fixation by exploiting a shared module-level HTTP client used across all users in the reverse proxy endpoint. Attackers controlling any HF Space can return a parent-domain cookie that the shared client stores and automatically replays into all subsequent proxy requests to other legitimate Spaces, affecting all users of the same Gradio deployment.","published":"2026-05-27T14:59:33.071Z","modified":"2026-08-12T03:51:25.592886975Z","cvss":null,"epss":{"score":0.0035,"percentile":0.28131,"asOf":"2026-08-15"},"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"PyPI","name":"gradio","fixedVersion":"6.15.0"}],"fix":{"url":"https://github.com/gradio-app/gradio/commit/feb7237d01f359d2ad4ee42d00344e61692b3b39","label":"gradio-app/gradio@feb7237"},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/48xxx/CVE-2026-48545.json"},{"type":"ADVISORY","url":"https://github.com/gradio-app/gradio/releases/tag/gradio%406.15.0"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-48545"},{"type":"ADVISORY","url":"https://www.vulncheck.com/advisories/gradio-cookie-injection-via-shared-pro"},{"type":"REPORT","url":"https://github.com/gradio-app/gradio/issues/13369"},{"type":"REPORT","url":"https://github.com/gradio-app/gradio/pull/13384"},{"type":"FIX","url":"https://github.com/gradio-app/gradio/commit/feb7237d01f359d2ad4ee42d00344e61692b3b39"},{"type":"PACKAGE","url":"https://github.com/gradio-app/gradio"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-12T03:51:25.592886975Z"}}