CVE-2024-6090
27.06.2024, 19:15
A path traversal vulnerability exists in gaizhenbiao/chuanhuchatgpt version 20240410, allowing any user to delete other users' chat histories. This vulnerability can also be exploited to delete any files ending in `.json` on the target system, leading to a denial of service as users are unable to authenticate.Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.