Database/AI/ML frameworks & serving
BentoML: Insecure deserialization
CVSS 10.0CVE-2024-2912AI/ML frameworks & servingcurated
Impact
Insecure deserialization → RCE from a crafted POST
Who can reach it
Unauthenticated network to the BentoML serving port
What to do
Upgrade. A default BentoML service is an unauthenticated RCE endpoint pre-patch
References
Related entries
- BentoML: RCE via insecure deserializationCVE-2025-27520 · BentoMLCritical
- BentoML: Insecure deserialization RCE prior to 1.4.8CVE-2025-32375 · BentoMLCritical
- BentoML (bentofile.yaml path fields: description, docker.setup_script, docker.dockerfile_templateCVE-2026-24123 · BentoMLHigh
- llama.cpp (RPC backend): Unsafe `data` pointer in `rpc_tensor`CVE-2024-42479 · llama.cpp (RPC backend)Critical
- MLflow (`extract_archive_to_dir`): Path traversal in the dbconnect artifact cacheCVE-2025-15036 · MLflow (`extract_archive_to_dir`)Critical
- vLLM (Mooncake ZMQ/TCP): Unsafe deserialization exposed on all interfacesCVE-2025-32444 · vLLM (Mooncake ZMQ/TCP)Critical
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.