Home

Description

Incorrect access control in Xinference before v1.4.0 allows attackers to access the Web GUI without authentication.

PUBLISHED Reserved 2025-04-22 | Published 2025-07-02 | Updated 2025-07-02 | Assigner mitre

References

github.com/...lob/main/Xinference_Web/Xinference_Web_EN.docx

github.com/honysyang/Xinference/tree/main/Xinference_Web

cve.org (CVE-2025-45424)

nvd.nist.gov (CVE-2025-45424)

Download JSON