Database/AI/ML frameworks & serving
BentoML: RCE via insecure deserialization
CVSS 9.8CVE-2025-27520AI/ML frameworks & servingcurated
Impact
RCE via insecure deserialization
Who can reach it
Network to the serving endpoint
What to do
Upgrade
References
Related entries
- BentoML: Insecure deserialization RCE prior to 1.4.8CVE-2025-32375 · BentoMLCritical
- BentoML (bentofile.yaml path fields: description, docker.setup_script, docker.dockerfile_templateCVE-2026-24123 · BentoMLHigh
- BentoML: Insecure deserializationCVE-2024-2912 · BentoMLCritical
- PyTorch (`torch.load`): RCE via unsafe deserialization even with `weights_only=True`CVE-2025-32434 · PyTorch (`torch.load`)Critical
- vLLM (`PyNcclPipe` KV transfer): RCE via the KV cache transfer integrationCVE-2025-47277 · vLLM (`PyNcclPipe` KV transfer)Critical
- Keras: Deserialization of untrusted data in 3.11.0–3.11.2CVE-2025-49655 · KerasCritical
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.