CVE-2024-32025 - CVE House
Back to Database
Status published Critical CVE-2024-32025

Kohya_ss is vulnerable to a command injection in `group_images_gui.py` (`GHSL-2024-021`)

Affected Vendor

Affected Software

kohya_ss
Vulnerable Versions:
>= 22.6.1, < 23.1.5

Timeline

Official Publish: April 16th, 2024
Last Modified: August 27th, 2025
Added to House: July 22nd, 2026

CVSS Vectors

V3: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

Weaknesses (CWE)