xinference@0.12.0 vulnerabilities

Model Serving Made Easy

Direct Vulnerabilities

Known vulnerabilities in the xinference package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
Missing Authentication for Critical Function

xinference is a Xorbits Inference(Xinference) is a powerful and versatile library designed to serve language, speech recognition, and multimodal models. With Xorbits Inference, you can effortlessly deploy and serve your or state-of-the-art built-in models using just a single command. Whether you are a researcher, developer, or data scientist, Xorbits Inference empowers you to unleash the full potential of cutting-edge AI models.

Affected versions of this package are vulnerable to Missing Authentication for Critical Function via the Web GUI process. An attacker can gain unauthorized access to sensitive functionality by directly accessing locally deployed interface without authentication.

How to fix Missing Authentication for Critical Function?

There is no fixed version for xinference.

[0,)