Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

gaizhenbiao/chuanhuchatgpt — Vulnerabilities & Security Advisories 30

All 30 CVE vulnerabilities found in gaizhenbiao/chuanhuchatgpt, with AI-generated Chinese analysis, references, and POCs.

This page documents security weaknesses associated with the chuanhuchatgpt project developed by gaizhenbiao on GitHub, specifically focusing on Common Weakness Enumeration classifications. It aggregates known vulnerabilities affecting this open-source chatbot platform, covering incidents reported and patched between 2023 and 2024. Users can utilize this resource to track the vendor's advisory history, understand the specific technical nature of each weakness class, and review the product's vulnerability timeline to assess its security posture. The data aims to provide transparency regarding how issues are identified, disclosed, and resolved within the project's lifecycle. This collection includes flaws related to input validation, authentication mechanisms, and session management that have been previously addressed in the codebase. By centralizing this information, the page serves as a reference for developers, security researchers, and users interested in the robustness of the chuanhuchatgpt application. It does not cover theoretical or unpatched risks, but rather focuses on verified issues with documented fixes. The summary helps stakeholders evaluate the frequency and severity of past security events, offering insights into the development team's response time and remediation practices. This approach supports informed decision-making for those deploying or contributing to the project. Readers can cross-reference specific weakness types to better understand potential attack vectors and mitigation strategies applied by the maintainer. The page avoids speculative analysis and sticks to recorded facts from public sources.

Vendor: gaizhenbiao

CVE IDTitleCVSSSeverityPublished
CVE-2024-8613 Improper Access Control in gaizhenbiao/chuanhuchatgpt CWE-639 8.2 -2025-03-20
CVE-2024-9216 Authentication Bypass in gaizhenbiao/ChuanhuChatGPT CWE-304 7.1 -2025-03-20
CVE-2024-10650 Denial of Service (DoS) in gaizhenbiao/chuanhuchatgpt CWE-770 7.5 -2025-03-20
CVE-2024-8400 Stored XSS in gaizhenbiao/chuanhuchatgpt CWE-79 5.4 -2025-03-20
CVE-2024-10955 ReDoS (Regular Expression Denial of Service) in gaizhenbiao/chuanhuchatgpt CWE-1333 7.5 -2025-03-20
CVE-2025-0191 Denial of Service in gaizhenbiao/chuanhuchatgpt CWE-400 7.5 -2025-03-20
CVE-2024-9107 Stored XSS in gaizhenbiao/chuanhuchatgpt CWE-79 5.4 -2025-03-20
CVE-2024-9159 Incorrect Authorization in gaizhenbiao/chuanhuchatgpt CWE-863 6.5 -2025-03-20
CVE-2024-10707 Local File Inclusion in gaizhenbiao/chuanhuchatgpt CWE-22 7.5 -2025-03-20
CVE-2025-0188 SSRF in gaizhenbiao/chuanhuchatgpt CWE-918 8.8 -2025-03-20
CVE-2024-8143 Unauthorized Access to User Chat History in gaizhenbiao/chuanhuchatgpt CWE-1057 6.5AIMediumAI2024-10-29
CVE-2024-5823 File Overwrite Vulnerability in gaizhenbiao/chuanhuchatgpt CWE-73 9.1AICriticalAI2024-10-29
CVE-2024-7807 Denial of Service (DOS) in gaizhenbiao/chuanhuchatgpt CWE-770 7.5AIHighAI2024-10-29
CVE-2024-7962 Arbitrary File Read via Insufficient Validation in gaizhenbiao/chuanhuchatgpt CWE-29 6.2AIMediumAI2024-10-29
CVE-2024-5982 Path Traversal in gaizhenbiao/chuanhuchatgpt CWE-22 9.8AICriticalAI2024-10-29
CVE-2024-6255 Path Traversal in gaizhenbiao/chuanhuchatgpt CWE-22 8.2 High2024-07-31
CVE-2024-6035 Stored XSS in gaizhenbiao/chuanhuchatgpt CWE-79 5.4AIMediumAI2024-07-11
CVE-2024-6036 Denial of Service in gaizhenbiao/chuanhuchatgpt CWE-400 8.1AIHighAI2024-07-10
CVE-2024-6037 Arbitrary Folder Creation in gaizhenbiao/chuanhuchatgpt CWE-770 9.1AICriticalAI2024-07-10
CVE-2024-5822 Server-Side Request Forgery (SSRF) in gaizhenbiao/ChuanhuChatGPT CWE-918 7.5AIHighAI2024-06-27
CVE-2024-6038 ReDoS Vulnerability in gaizhenbiao/chuanhuchatgpt CWE-1333 7.5AIHighAI2024-06-27
CVE-2024-6090 Path Traversal Vulnerability in gaizhenbiao/chuanhuchatgpt CWE-22 7.1AIHighAI2024-06-27
CVE-2024-5124 Timing Attack Vulnerability in gaizhenbiao/chuanhuchatgpt CWE-203 7.4AIHighAI2024-06-06
CVE-2024-3404 Improper Access Control in gaizhenbiao/chuanhuchatgpt CWE-863 4.3AIMediumAI2024-06-06
CVE-2024-5278 Unrestricted File Upload leading to RCE in gaizhenbiao/chuanhuchatgpt CWE-434 9.8AICriticalAI2024-06-06
CVE-2024-3402 Stored XSS vulnerability in gaizhenbiao/chuanhuchatgpt CWE-79 5.4AIMediumAI2024-06-06
CVE-2024-3234 Path Traversal in gaizhenbiao/chuanhuchatgpt CWE-22 7.5AIHighAI2024-06-06
CVE-2024-4520 Improper Access Control in gaizhenbiao/chuanhuchatgpt CWE-862 8.1AIHighAI2024-06-04
CVE-2024-4321 Local File Inclusion (LFI) in gaizhenbiao/chuanhuchatgpt CWE-20 7.5AIHighAI2024-05-16
CVE-2024-2217 Improper Access Control in gaizhenbiao/chuanhuchatgpt CWE-284 9.1AICriticalAI2024-04-10

All 30 known CVE vulnerabilities affecting gaizhenbiao/chuanhuchatgpt with full Chinese analysis, references, and POCs where available.