{"id":"GHSA-26jh-r8g2-6fpr","aliases":[],"url":"https://o3.security/vulnerability/GHSA-26jh-r8g2-6fpr","summary":"Gradio's dropdown component pre-process step does not limit the values to those in the dropdown list","details":"### Impact\n**What kind of vulnerability is it? Who is impacted?**\n\nThis vulnerability is a **data validation issue** in the Gradio `Dropdown` component's pre-processing step. Even if the `allow_custom_value` parameter is set to `False`, attackers can bypass this restriction by sending custom requests with arbitrary values, effectively breaking the developer’s intended input constraints. While this alone is not a severe vulnerability, it can lead to more critical security issues, particularly when paired with other vulnerabilities like file downloads from the user's machine.\n\n### Patches\nYes, this issue is addressed in `gradio>=5.0`. Please upgrade to the latest version to resolve the problem.\n\n### Workarounds  \n**Is there a way for users to fix or remediate the vulnerability without upgrading?**\n\nTo mitigate the issue without upgrading, developers can add manual validation in their prediction function to check the received values against the allowed dropdown values before processing them.","published":"2024-10-10T22:11:29Z","modified":"2026-09-10T03:50:19.171244086Z","cvss":{"score":5.3,"severity":"MEDIUM","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N"},"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"PyPI","name":"gradio","fixedVersion":"5.0.0"}],"fix":null,"references":[{"type":"WEB","url":"https://github.com/gradio-app/gradio/security/advisories/GHSA-26jh-r8g2-6fpr"},{"type":"PACKAGE","url":"https://github.com/gradio-app/gradio"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-09-10T03:50:19.171244086Z"}}