Technology · PyPI
chuanhuchatgpt (PyPI) vulnerabilities
Updated . Rebuilt every hour.
Junglewise Threat Intelligence has tracked 21 vulnerabilities in chuanhuchatgpt (PyPI): 0 in the last 7 days and 0 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2025-0191, was published on 20 March 2025.
- Last 7 days
- 0
- Last 90 days
- 0
- Critical, all time
- 0
- Exploited in the wild
- 0
Latest chuanhuchatgpt (PyPI) vulnerabilities
- CVE-2025-0191: PYSEC-2025-99 - A Denial of Service (DoS) vulnerability exists in the file upload feature of gaizhenbiao/chuanhuchatgpt…lowCVSS 3EPSS 0.6%
- CVE-2025-0188: PYSEC-2025-98 - A Server-Side Request Forgery (SSRF) vulnerability was discovered in gaizhenbiao/chuanhuchatgpt version…lowCVSS 3EPSS 0.5%
- CVE-2024-9216: PYSEC-2025-97 - An authentication bypass vulnerability exists in gaizhenbiao/ChuanhuChatGPT, as of commit 3856d4f, allowing…lowCVSS 3EPSS 0.6%
- CVE-2024-9159: PYSEC-2025-96 - An incorrect authorization vulnerability exists in gaizhenbiao/chuanhuchatgpt version git c91dbfc. The…lowCVSS 3EPSS 0.6%
- CVE-2024-9107: PYSEC-2025-95 - A stored cross-site scripting (XSS) vulnerability exists in the gaizhenbiao/chuanhuchatgpt repository…lowCVSS 3.1EPSS 0.6%
- CVE-2024-8613: PYSEC-2025-239 - A vulnerability in gaizhenbiao/chuanhuchatgpt version 20240802 allows attackers to access, copy, and…lowCVSS 3.1EPSS 0.6%
- CVE-2024-10955: PYSEC-2025-94 - A Regular Expression Denial of Service (ReDoS) vulnerability exists in gaizhenbiao/chuanhuchatgpt, as of…lowCVSS 3EPSS 0.7%
- CVE-2024-10707: PYSEC-2025-93 - gaizhenbiao/chuanhuchatgpt version git d4ec6a3 is affected by a local file inclusion vulnerability due to…lowCVSS 3EPSS 0.7%
- CVE-2024-10650: PYSEC-2025-92 - An unauthenticated Denial of Service (DoS) vulnerability was identified in ChuanhuChatGPT version…lowCVSS 3EPSS 0.7%
- CVE-2024-8143: PYSEC-2024-113 - In the latest version (20240628) of gaizhenbiao/chuanhuchatgpt, an issue exists in the /file endpoint that…lowCVSS 3.1EPSS 0.5%
- CVE-2024-7807: PYSEC-2024-119 - A vulnerability in gaizhenbiao/chuanhuchatgpt version 20240628 allows for a Denial of Service (DOS)…lowCVSS 3.1EPSS 0.6%
- CVE-2024-7962: PYSEC-2024-112 - An arbitrary file read vulnerability exists in gaizhenbiao/chuanhuchatgpt version 20240628 due to…lowCVSS 3.1EPSS 0.8%
- CVE-2024-6255: PYSEC-2024-73 - A vulnerability in the JSON file handling of gaizhenbiao/chuanhuchatgpt version 20240410 allows any user to…lowCVSS 3.1EPSS 13.1%
- CVE-2024-6035: PYSEC-2024-61 - A Stored Cross-Site Scripting (XSS) vulnerability exists in gaizhenbiao/chuanhuchatgpt version 20240410…lowCVSS 3.1EPSS 0.4%
- CVE-2024-6037: PYSEC-2024-317 - A vulnerability in gaizhenbiao/chuanhuchatgpt version 20240410 allows an attacker to create arbitrary…lowCVSS 3.1EPSS 10.7%
- CVE-2024-6036: PYSEC-2024-269 - A vulnerability in gaizhenbiao/chuanhuchatgpt version 20240410 allows any user to restart the server at…lowCVSS 3.1EPSS 10.9%
- CVE-2024-6090: PYSEC-2024-319 - A path traversal vulnerability exists in gaizhenbiao/chuanhuchatgpt version 20240410, allowing any user to…lowCVSS 3EPSS 0.9%
- CVE-2024-6038: PYSEC-2024-318 - A Regular Expression Denial of Service (ReDoS) vulnerability exists in the latest version of…lowCVSS 3EPSS 0.7%
- CVE-2024-5822: PYSEC-2024-268 - A Server-Side Request Forgery (SSRF) vulnerability exists in the upload processing interface of…lowCVSS 3.1EPSS 0.5%
- CVE-2024-4321: PYSEC-2024-267 - A Local File Inclusion (LFI) vulnerability exists in the gaizhenbiao/chuanhuchatgpt application…lowCVSS 3EPSS 0.6%
- CVE-2024-2217: PYSEC-2024-316 - gaizhenbiao/chuanhuchatgpt is vulnerable to improper access control, allowing unauthorized access to the…lowCVSS 3EPSS 0.8%
Most severe chuanhuchatgpt (PyPI) vulnerabilities
Exploited in the wild first, then by severity and CVSS score.
- CVE-2024-6255: PYSEC-2024-73 - A vulnerability in the JSON file handling of gaizhenbiao/chuanhuchatgpt version 20240410 allows any user to…lowCVSS 3.1EPSS 13.1%
- CVE-2024-6036: PYSEC-2024-269 - A vulnerability in gaizhenbiao/chuanhuchatgpt version 20240410 allows any user to restart the server at…lowCVSS 3.1EPSS 10.9%
- CVE-2024-6037: PYSEC-2024-317 - A vulnerability in gaizhenbiao/chuanhuchatgpt version 20240410 allows an attacker to create arbitrary…lowCVSS 3.1EPSS 10.7%
- CVE-2024-7962: PYSEC-2024-112 - An arbitrary file read vulnerability exists in gaizhenbiao/chuanhuchatgpt version 20240628 due to…lowCVSS 3.1EPSS 0.8%
- CVE-2024-7807: PYSEC-2024-119 - A vulnerability in gaizhenbiao/chuanhuchatgpt version 20240628 allows for a Denial of Service (DOS)…lowCVSS 3.1EPSS 0.6%
- CVE-2024-8613: PYSEC-2025-239 - A vulnerability in gaizhenbiao/chuanhuchatgpt version 20240802 allows attackers to access, copy, and…lowCVSS 3.1EPSS 0.6%
- CVE-2024-9107: PYSEC-2025-95 - A stored cross-site scripting (XSS) vulnerability exists in the gaizhenbiao/chuanhuchatgpt repository…lowCVSS 3.1EPSS 0.6%
- CVE-2024-5822: PYSEC-2024-268 - A Server-Side Request Forgery (SSRF) vulnerability exists in the upload processing interface of…lowCVSS 3.1EPSS 0.5%
- CVE-2024-8143: PYSEC-2024-113 - In the latest version (20240628) of gaizhenbiao/chuanhuchatgpt, an issue exists in the /file endpoint that…lowCVSS 3.1EPSS 0.5%
- CVE-2024-6035: PYSEC-2024-61 - A Stored Cross-Site Scripting (XSS) vulnerability exists in gaizhenbiao/chuanhuchatgpt version 20240410…lowCVSS 3.1EPSS 0.4%
Vulnerabilities per week
The last 13 weeks, by the week each vulnerability was published.
| Week of | Bar | Vulns | Critical |
|---|---|---|---|
| 6 Jul 2026 | 0 | 0 | |
| 13 Jul 2026 | 0 | 0 | |
| 20 Jul 2026 | 0 | 0 | |
| 27 Jul 2026 | 0 | 0 | |
| 3 Aug 2026 | 0 | 0 | |
| 10 Aug 2026 | 0 | 0 | |
| 17 Aug 2026 | 0 | 0 | |
| 24 Aug 2026 | 0 | 0 | |
| 31 Aug 2026 | 0 | 0 | |
| 7 Sep 2026 | 0 | 0 | |
| 14 Sep 2026 | 0 | 0 | |
| 21 Sep 2026 | 0 | 0 | |
| 28 Sep 2026 | 0 | 0 |
How this is built
Junglewise Threat Intelligence collects vulnerabilities from NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories, and matches each one to the technologies and vendors it affects. Dates are the date a vulnerability was published, in UTC.
The pages are rebuilt from the database every hour. Frozen weekly and monthly reports never change once published, so they can be cited.
Use this data
The same data is at https://junglewise.ai/threats/technologies/chuanhuchatgpt.json, for scripts and language models. It is free to reuse under CC BY 4.0 with a link back to this page.
Cite as: Junglewise Threat Intelligence, "chuanhuchatgpt (PyPI) vulnerabilities", https://junglewise.ai/threats/technologies/chuanhuchatgpt, 28 September 2026.