A vulnerability classified as very critical has been found in FishAudio Bert-VITS2 up to 2.3. This affects the function
bert_gen
. The manipulation of the argument data_dir leads to os command injection.
This vulnerability is uniquely identified as CVE-2024-39686. It is possible to initiate the attack remotely. There is no exploit available.