gradio icon indicating copy to clipboard operation
gradio copied to clipboard

Numbers have collisions, need a bit more security

Open salamanders opened this issue 1 year ago • 1 comments

Describe the bug

My redirect failed to start. I didn't know this. So when I loaded the https://17380.gradio.app link, I got someone else's app.

This feels sketchy, like it is too easy to try numbers at random. Could it have some sort of checksum digits in the url so they can't be blind-guessed?

Is there an existing issue for this?

  • [X] I have searched the existing issues

Reproduction

Start anything with share=True

Screenshot

No response

Logs

N/A

System Info

ubuntu-server

Severity

annoying

salamanders avatar Sep 13 '22 23:09 salamanders

Hi @salamanders thanks for creating this issue. Fully agree -- we'll work on improving this

abidlabs avatar Sep 13 '22 23:09 abidlabs

Hi @salamanders we just pushed a change to how our links are generated so this issue should now be fixed across all versions of Gradio. I would appreciate if you can try it out and let us know if it works for you

abidlabs avatar Oct 17 '22 04:10 abidlabs

Seems like everything is working so let me go ahead and close

abidlabs avatar Oct 18 '22 05:10 abidlabs