Gtedge maintains the GT Edge AI platform, a narrowly scoped AI infrastructure product where disclosed vulnerabilities center on access-control bypass, sensitive-information exposure, and code-injection conditions. These represent typical risks in AI-serving platforms where authentication boundaries, data handling, and dynamic code execution are core functional requirements. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Gtedge over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-63665CRITICAL An issue in GT Edge AI Community Edition Versions before v2.0.12 allows attackers to execute arbitrary code via injecting a crafted JSON payload into the Prompt window. | Dec 19, 2025 | 9.8 | 31 | NO | NO |
CVE-2025-63664HIGH Incorrect access control in the /api/v1/conversations/*/messages API of GT Edge AI Platform before v2.0.10-dev allows unauthorized attackers to access other users' message history | Dec 22, 2025 | 7.5 | 25 | NO | NO |
CVE-2025-63663HIGH Incorrect access control in the /api/v1/conversations/*/files API of GT Edge AI Platform before v2.0.10 allows unauthorized attackers to access other users' uploaded files. | Dec 22, 2025 | 7.5 | 25 | NO | NO |
CVE-2025-63662HIGH Insecure permissions in the /api/v1/agents API of GT Edge AI Platform before v2.0.10-dev allows unauthorized attackers to access sensitive information. | Dec 22, 2025 | 7.5 | 25 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Gtedge.
Media articles that mention a CVE ID that affects a product developed by Gtedge — matched by CVE ID, not by vendor name.