Applio is a voice conversion tool. Versions 3.2.8-bugfix and prior are vulnerable to unsafe deserialization in `infer.py`. The issue can lead to remote code execution. As of time of publication, a fix is available on the `main` branch of the Applio repository but not attached to a numbered release.
References
Configurations
History
No history.
Information
Published : 2025-03-19 21:15
Updated : 2025-08-01 00:41
NVD link : CVE-2025-27778
Mitre link : CVE-2025-27778
CVE.ORG link : CVE-2025-27778
JSON object : View
Products Affected
applio
- applio
CWE
CWE-502
Deserialization of Untrusted Data
