Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2024-8613

23
FAUCET Score

CVE-2024-8613 is a high-severity vulnerability (CVSS 8.8) affecting gaizhenbiao/chuanhuchatgpt version 20240802. It stems from improper session data handling and a lack of access control, allowing authenticated attackers to access, copy, and delete other users' chat histories. This presents a significant risk of confidentiality, integrity, and availability compromise for user data. The attack vector is network-based with low attack complexity, requiring only low privileges to exploit, and no user interaction. While the FAUCET Risk Score is high at 83/100, there is currently no evidence of active exploitation, nor are there any public exploit modules or proof-of-concept code available. Community discussion and media coverage for this CVE are also minimal.

Impacted Technologies

VendorProductVersion(s)CPE
20240802CPE matchmatch criteria
cpe:2.3:a:gaizhenbiao:chuanhuchatgpt:20240802:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 3.0

8.1HIGH

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
NONE
Exploitability Score
2.8
Impact Score
5.2
CvssVersion
3.0

Exploit Intelligence

EPSS Score
0.55%
Probability of exploitation in next 30 days
EPSS Percentile
42.8%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0055 is in the 32nd percentile among its peer group of 17,844 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (1)

github_advisorypatch availablevia nvd_reference
View patch

References

github.com / gaizhenbiao/chuanhuchatgpt/commit/526c615c437377ee9c71f866fd0f19011910f705
Patch
huntr.com / bounties/76258774-b011-4044-9c3d-c2609b1cbd29
ExploitThird Party Advisory