CVE-2026-48545 Details
Description
Gradio before version 6.15.0 contains a cookie injection vulnerability that allows remote attackers to perform cross-Space session fixation by exploiting a shared module-level HTTP client used across all users in the reverse proxy endpoint. Attackers controlling any HF Space can return a parent-domain cookie that the shared client stores and automatically replays into all subsequent proxy requests to other legitimate Spaces, affecting all users of the same Gradio deployment.
A cookie injection vulnerability has been identified in Gradio versions prior to 6.15.0. This vulnerability allows remote attackers to perform cross-space session fixation by exploiting a shared module-level HTTP client used across all users in the reverse proxy endpoint. Attackers controlling any Hugging Face Space can inject a parent-domain cookie that is stored by the shared client and automatically included in subsequent proxy requests to other legitimate Spaces, affecting all users of the same Gradio deployment.
Users can update to Gradio version 6.15.1 or later, where this vulnerability has been fixed.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed May 27, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://github.com/gradio-app/gradio/issues/13369 | CISA-ADP | Issue Tracking |
| https://github.com/gradio-app/gradio/commit/feb7237d01f359d2ad4ee42d00344e61692b3b39 | [email protected] | Patch |
| https://github.com/gradio-app/gradio/issues/13369 | [email protected] | Issue Tracking |
| https://github.com/gradio-app/gradio/pull/13384 | [email protected] | Issue TrackingPatch |
| https://github.com/gradio-app/gradio/releases/tag/gradio%406.15.0 | [email protected] | ProductRelease Notes |
| https://www.vulncheck.com/advisories/gradio-cookie-injection-via-shared-pro | [email protected] | Broken Link |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-384 | Session Fixation | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| gradio project gradio | < 6.15.0 |
CPE
Remediation
| |
Change History
6 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jul 14, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Jun 2, 2026 | Initial Analysis | [email protected] |
| May 27, 2026 | CVE Modified | CISA-ADP |
| May 27, 2026 | New CVE Received | [email protected] |