Vulnerability index

Browse CVEs

14 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Applio CRITICAL 9.8
CVE-2025-27781

Applio is a voice conversion tool. Versions 3.2.8-bugfix and prior are vulnerable to unsafe deserialization in inference.py. `model_file` in inferenc…

Fix: after 3.2.8-bugfix
Fix from $2,300 2025-03-19
Applio CRITICAL 9.8
CVE-2025-27782

Applio is a voice conversion tool. Versions 3.2.8-bugfix and prior are vulnerable to arbitrary file write in inference.py. This issue may lead to wri…

Fix: after 3.2.8-bugfix
Fix from $2,300 2025-03-19
Applio CRITICAL 9.8
CVE-2025-27783

Applio is a voice conversion tool. Versions 3.2.8-bugfix and prior are vulnerable to arbitrary file write in train.py. This issue may lead to writing…

Fix: after 3.2.8-bugfix
Fix from $2,300 2025-03-19
Applio CRITICAL 9.1
CVE-2025-27786

Applio is a voice conversion tool. Versions 3.2.8-bugfix and prior are vulnerable to arbitrary file removal in core.py. `output_tts_path` in tts.py t…

Fix: after 3.2.8-bugfix
Fix from $2,300 2025-03-19
Applio HIGH 7.5
CVE-2025-27784

Applio is a voice conversion tool. Versions 3.2.8-bugfix and prior are vulnerable to arbitrary file read in train.py's `export_pth` function. This is…

Fix: after 3.2.8-bugfix
Fix from $1,950 2025-03-19
Applio HIGH 7.5
CVE-2025-27785

Applio is a voice conversion tool. Versions 3.2.8-bugfix and prior are vulnerable to arbitrary file read in train.py's `export_index` function. This …

Fix: after 3.2.8-bugfix
Fix from $1,950 2025-03-19
Applio HIGH 7.5
CVE-2025-27787

Applio is a voice conversion tool. Versions 3.2.8-bugfix and prior are vulnerable to denial of service (DoS) in restart.py. `model_name` in train.py …

Fix: after 3.2.8-bugfix
Fix from $1,950 2025-03-19
Applio CRITICAL 9.8
CVE-2025-27778

Applio is a voice conversion tool. Versions 3.2.8-bugfix and prior are vulnerable to unsafe deserialization in `infer.py`. The issue can lead to remo…

Fix: after 3.2.8-bugfix
Fix from $2,300 2025-03-19
Applio CRITICAL 9.8
CVE-2025-27779

Applio is a voice conversion tool. Versions 3.2.8-bugfix and prior are vulnerable to unsafe deserialization in `model_blender.py` lines 20 and 21. `m…

Fix: after 3.2.8-bugfix
Fix from $2,300 2025-03-19
Applio CRITICAL 9.8
CVE-2025-27780

Applio is a voice conversion tool. Versions 3.2.8-bugfix and prior are vulnerable to unsafe deserialization in model_information.py. `model_name` in …

Fix: after 3.2.8-bugfix
Fix from $2,300 2025-03-19
Applio HIGH 7.5
CVE-2025-27777

Applio is a voice conversion tool. Versions 3.2.7 and prior are vulnerable to server-side request forgery (SSRF) in `model_download.py` (line 195 in …

Fix: after 3.2.7
Fix from $1,950 2025-03-19
Applio MEDIUM 5.3
CVE-2025-27774

Applio is a voice conversion tool. Versions 3.2.7 and prior are vulnerable to server-side request forgery (SSRF) and file write in `model_download.py…

Fix: after 3.2.7
Fix from $1,600 2025-03-19
Applio MEDIUM 5.3
CVE-2025-27775

Applio is a voice conversion tool. Versions 3.2.7 and prior are vulnerable to server-side request forgery (SSRF) and file write in `model_download.py…

Fix: after 3.2.7
Fix from $1,600 2025-03-19
Applio MEDIUM 5.3
CVE-2025-27776

Applio is a voice conversion tool. Versions 3.2.7 and prior are vulnerable to server-side request forgery (SSRF) and file write in `model_download.py…

Fix: after 3.2.7
Fix from $1,600 2025-03-19