CVE-2025-43843 | RVC-Project Retrieval-based-Voice-Conversion-WebUI up to 2.2.231006 exp_dir1/np7/f0method8 command injection (GHSL-2025-012)
A vulnerability was found in RVC-Project Retrieval-based-Voice-Conversion-WebUI up to 2.2.231006. It has been classified as critical. Affected is an unknown function. The manipulation of the argument exp_dir1/np7/f0method8 leads to command injection.
This vulnerability is traded as CVE-2025-43843. It is possible to launch the attack remotely. There is no exploit available.