GT Edge AI Platform Incorrect Access Control Vulnerability in File API Allowing Unauthorized File Access
Vulnerability
A vulnerability exists in the GT Edge AI Platform, specifically in the Community Edition prior to version 2.0.12. The issue arises from incorrect access control in the '/api/v1/conversations/*/files' API, which allows unauthorized attackers to access files uploaded by other users.
Impact
Exploitation of this vulnerability leads to unauthorized access to users' uploaded files.
Added: Dec 22, 2025, 7:19 PM
Updated: Dec 22, 2025, 8:22 PM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
2.5exploitability
5.2remediation
0.0relevance
1.6threat
0.0urgency
2.9incentive
1.7Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
