ZDI-CAN-22660: ZDI-23-1772: (0Day) OpenAI ChatGPT Improper Input Validation Model Policy Bypass Vulnerability
Published Dec 13, 2023
·Updated
This vulnerability allows remote attackers to bypass policy restictions on affected versions of OpenAI ChatGPT. Authentication is required to exploit this vulnerability. The ZDI has assigned a CVSS rating of 6.5.
Affected Software
1 affected component
OpenAI Chatgpt
Event History
Dec 13, 2023
Advisory Published
06:00 AM
Data Sourced
06:00 AM
Description
Frequently Asked Questions
1
What is the severity of ZDI-CAN-22660?
The severity of ZDI-CAN-22660 is rated at 6.5 on the CVSS scale.
2
What does ZDI-CAN-22660 allow attackers to do?
ZDI-CAN-22660 allows remote attackers to bypass policy restrictions on affected versions of OpenAI ChatGPT.
3
Is authentication required to exploit ZDI-CAN-22660?
Yes, authentication is required to exploit the ZDI-CAN-22660 vulnerability.
4
Which software is affected by ZDI-CAN-22660?
The affected software for ZDI-CAN-22660 is OpenAI ChatGPT.
5
How can organizations mitigate ZDI-CAN-22660?
Organizations should ensure they apply any available patches and updates to OpenAI ChatGPT to mitigate ZDI-CAN-22660.