OSS Support Hub / Data Science

Python Data Science Apache-2.0 Latest: gradio@6.19.0

Gradio

Build and share machine learning demos and web apps with Python in minutes

Project Health at a Glance

Live data from GitHub and PyPI, updated daily.

43.0K+265
GitHub Stars
📦
gradio@6.19.0
Latest Release · 12 days ago
🔄
0d
Avg. Release Cadence
🐛
253
Open Issues
📅
Yesterday
Last Commit
🔒
10
Active CVEs

Data last fetched: 2026-06-29

Known Vulnerabilities

10 active CVEs reported via OSV.dev

Gradio's dropdown component pre-process step does not limit the values to those in the dropdown list

Published: 2024-10-10 Fixed in: 5.0.0

Gradio uses insecure communication between the FRP client and server

Published: 2024-10-10 Fixed in: 5.0.0

Gradio's Component Server does not properly consider` _is_server_fn` for functions

Published: 2024-05-05 Fixed in: 4.13.0

Gradio has a one-level read path traversal in `/custom_component`

Published: 2024-10-10 Fixed in: 4.44.0

Gradio is Vulnerable to Absolute Path Traversal on Windows with Python 3.13+

Published: 2026-03-01 Fixed in: 6.7.0

Gradios's CORS origin validation is not performed when the request has a cookie

Published: 2024-10-10 Fixed in: 4.44.0

gradio Server Side Request Forgery vulnerability

Published: 2024-11-05 No fix available

Gradio vulnerable to arbitrary file read and proxying of arbitrary URLs

Published: 2023-06-09 Fixed in: 3.34.0

Update share links to use FRP instead of SSH tunneling

Published: 2023-02-23 Fixed in: 3.13.1

Gradio applications running locally vulnerable to 3rd party websites accessing routes and uploading files

Published: 2024-05-21 Fixed in: 4.19.2

Alternatives to Gradio

Other Data Science projects in the Python ecosystem worth evaluating.

Support Options for Gradio

Enterprise Support via DepKeep

Get SLA-backed support, security patches, and direct access to senior engineers for Gradio — without relying on volunteer maintainers.