CVE-2026-28414 | gradio-app gradio up to 6.6 on Windows /windows/win.ini absolute path traversal (GHSA-39mp-8hj3-5c49 / EUVD-2026-9082)
A vulnerability classified as problematic was found in gradio-app gradio up to 6.6 on Windows. This impacts an unknown function of the file /windows/win.ini. Such manipulation leads to absolute path traversal.
This vulnerability is documented as CVE-2026-28414. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is advised.