An open redirect vulnerability exists in Byaidu PDFMathTranslate v1.9.9 that allows attackers to craft URLs that cause the application to redirect users to arbitrary external websites via the file parameter to the /gradio_api endpoint. This vulnerability could be exploited for phishing attacks or to bypass security filters.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-pfrv-63w8-q7rq | Byaidu PDFMathTranslate vulnerable to open redirect |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 30 Oct 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An open redirect vulnerability exists in Byaidu PDFMathTranslate v1.9.9 that allows attackers to craft URLs that cause the application to redirect users to arbitrary external websites via the file parameter to the /gradio_api endpoint. This vulnerability could be exploited for phishing attacks or to bypass security filters. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-10-30T14:08:21.002Z
Reserved: 2025-06-16T00:00:00.000Z
Link: CVE-2025-50736
No data.
Status : Awaiting Analysis
Published: 2025-10-30T14:15:43.393
Modified: 2025-10-30T15:03:13.440
Link: CVE-2025-50736
No data.
OpenCVE Enrichment
No data.
Github GHSA