A vulnerability was found in RVC-Boss GPT-SoVITS up to 20250228v3. It has been rated as critical. Affected by this issue is the function
load_sovits_new
of the file process_ckpt.py. The manipulation of the argument SoVITS_dropdown leads to deserialization.
This vulnerability is handled as CVE-2025-49841. The attack may be launched remotely. There is no exploit available.