Xinference Access Control Vulnerability Allowing Unauthenticated Web GUI Access

Vulnerability

A vulnerability in Xinference versions prior to 1.4.0 allows attackers to access the Web GUI without authentication due to incorrect access control.

Impact

Exploitation of this vulnerability allows for unauthorized access to the Web GUI.

Added: Jul 2, 2025, 5:26 PM
Updated: Jul 2, 2025, 6:25 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
1.3
exploitability
7.4
remediation
0.0
relevance
0.2
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.