MEDIUM6.5
PYSEC-2025-96
Details
An incorrect authorization vulnerability exists in gaizhenbiao/chuanhuchatgpt version git c91dbfc. The vulnerability allows any user to restart the server at will, leading to a complete loss of availability. The issue arises because the function responsible for restarting the server is not properly guarded by an admin check.
Are you affected?
Enter the version of the package you're using.
Affected packages
PyPI/chuanhuchatgpt
Introduced in:
0No fixed version published yet for chuanhuchatgpt (pip). Pin to a known-safe version or switch to an alternative.