A Cross-Site WebSocket Hijacking (CSWSH) vulnerability in automatic1111/stable-diffusion-webui version 1.10.0 allows an attacker to clone a malicious server extension from a GitHub repository. The vulnerability arises from the lack of proper validation on WebSocket connections at ws://127.0.0.1:7860/queue/join, enabling unauthorized actions on the server. This can lead to unauthorized cloning of server extensions, execution of malicious scripts, data exfiltration, and potential denial of service (DoS).
                
            Metrics
Affected Vendors & Products
References
        History
                    Tue, 05 Aug 2025 16:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Automatic1111 Automatic1111 stable-diffusion-webui | |
| Weaknesses | CWE-346 | |
| CPEs | cpe:2.3:a:automatic1111:stable-diffusion-webui:1.10.0:*:*:*:*:*:*:* | |
| Vendors & Products | Automatic1111 Automatic1111 stable-diffusion-webui | 
Thu, 20 Mar 2025 19:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | ssvc 
 | 
Thu, 20 Mar 2025 10:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A Cross-Site WebSocket Hijacking (CSWSH) vulnerability in automatic1111/stable-diffusion-webui version 1.10.0 allows an attacker to clone a malicious server extension from a GitHub repository. The vulnerability arises from the lack of proper validation on WebSocket connections at ws://127.0.0.1:7860/queue/join, enabling unauthorized actions on the server. This can lead to unauthorized cloning of server extensions, execution of malicious scripts, data exfiltration, and potential denial of service (DoS). | |
| Title | Cross-Site WebSocket Hijacking (CSWSH) in automatic1111/stable-diffusion-webui | |
| Weaknesses | CWE-284 | |
| References |  | |
| Metrics | cvssV3_0 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: @huntr_ai
Published: 2025-03-20T10:10:12.258Z
Updated: 2025-03-20T18:24:44.284Z
Reserved: 2024-11-09T06:57:34.575Z
Link: CVE-2024-11045
 Vulnrichment
                        Vulnrichment
                    Updated: 2025-03-20T17:49:57.461Z
 NVD
                        NVD
                    Status : Analyzed
Published: 2025-03-20T10:15:23.873
Modified: 2025-08-05T16:26:33.160
Link: CVE-2024-11045
 Redhat
                        Redhat
                    No data.