VDB
Sign up
MEDIUM6.5

PYSEC-2025-99

Details

A Denial of Service (DoS) vulnerability exists in the file upload feature of gaizhenbiao/chuanhuchatgpt version 20240914. The vulnerability is due to improper handling of form-data with a large filename in the file upload request. By sending a payload with an excessively large filename, the server becomes overwhelmed and unresponsive, leading to unavailability for legitimate users.

Are you affected?

Enter the version of the package you're using.

Affected packages

PyPI/chuanhuchatgpt
Introduced in: 0

No fixed version published yet for chuanhuchatgpt (pip). Pin to a known-safe version or switch to an alternative.

References