ZDI-23-1772: (0Day) OpenAI ChatGPT Improper Input Validation Model Policy Bypass Vulnerability
Published Dec 13, 2023
·Updated
This vulnerability allows remote attackers to bypass policy restictions on affected versions of OpenAI ChatGPT. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 6.5.
Affected Software
1 affected component
OpenAI Chatgpt
Event History
Dec 13, 2023
Advisory Published
06:00 AM
Data Sourced
06:00 AM
Description
Frequently Asked Questions
1
What is the severity of ZDI-23-1772?
The ZDI-23-1772 vulnerability has a CVSS rating of 6.5, indicating moderate severity.
2
How do I fix ZDI-23-1772?
To fix ZDI-23-1772, ensure that you are using the latest version of OpenAI ChatGPT that addresses this vulnerability.
3
What type of vulnerability is ZDI-23-1772?
ZDI-23-1772 is a remote code execution vulnerability that allows attackers to bypass policy restrictions.
4
Is authentication required to exploit ZDI-23-1772?
Yes, authentication is required to exploit the ZDI-23-1772 vulnerability.
5
What software is affected by ZDI-23-1772?
ZDI-23-1772 affects affected versions of OpenAI ChatGPT.