# CodeQL zero to hero part 4: Gradio framework case study

DevFeed: [CodeQL zero to hero part 4: Gradio framework case study](<https://devfeed.tech/articles/codeql-zero-to-hero-part-4-gradio-framework-case-study-67657.md>)

Original publisher: [Read original article](<https://github.blog/security/vulnerability-research/codeql-zero-to-hero-part-4-gradio-framework-case-study/>)

Author: Sylwia Budzynska

Published: 2024-12-11T15:00:15Z

Content type: tutorial

Language: en

Sources: [GitHub Blog](<https://devfeed.tech/sources/github-engineering.md>)

Topics: [gradio](<https://devfeed.tech/topics/gradio.md>), [CI/CD](<https://devfeed.tech/topics/cicd.md>)

Tags: [attack-surface](<https://devfeed.tech/tags/attack-surface.md>), [code-scanning](<https://devfeed.tech/tags/code-scanning.md>), [codeql](<https://devfeed.tech/tags/codeql.md>), [github-security-lab](<https://devfeed.tech/tags/github-security-lab.md>), [gradio](<https://devfeed.tech/tags/gradio.md>), [security](<https://devfeed.tech/tags/security.md>), [vulnerability-research](<https://devfeed.tech/tags/vulnerability-research.md>)

## AI overview

This tutorial explains how to model Gradio inputs as sources in CodeQL, connect them to sinks, and use taint analysis and Multi-Repository Variant Analysis to find vulnerabilities across projects. It reports 11 vulnerabilities found in Gradio-based projects and notes that Gradio 5.0 fixed a dropdown validation issue while older versions may remain affected.

## Source excerpt

Learn how I discovered 11 new vulnerabilities by writing CodeQL models for Gradio framework and how you can do it, too.